A vulnerability was found in patriksimek vm2 up to 3.10.x. It has been classified as critical. This vulnerability affects unknown code. Performing a manipulation results in code injection. This vulnerability was named CVE-2026-24118. The attack may be initiated remotely.
| Vendor | Product | Versions |
|---|---|---|
| vm2 | vm2 | < 3.11.0 |
Updated description with new details about the vulnerability and confirmed no available exploit.
Initial creation