CVE-2025-53637 | Meshtastic Firmware up to 2.6.5 GitHub Action main_matrix.yml os command injection (EUVD-2025-21075)
A vulnerability identified as critical has been detected in Meshtastic Firmware up to 2.6.5. This issue affects some unknown processing of the file main_matrix.yml of the component GitHub Action Handler. This manipulation causes os command injection.
This vulnerability is registered as CVE-2025-53637. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.