CVE-2026-21267

Source
https://cve.org/CVERecord?id=CVE-2026-21267
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-21267.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-21267
Published
2026-01-13T19:16:24.213Z
Modified
2026-03-13T03:56:00.197155Z
Severity
  • 8.6 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

Dreamweaver Desktop versions 21.6 and earlier are affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could lead in arbitrary code execution by an attacker. Exploitation of this issue requires user interaction in that a victim must open a malicious file and scope is changed.

References

Affected packages

Git /

Affected ranges

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-21267.json"
unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "fixed": "21.7"
            }
        ]
    }
]