CVE-2026-40029 | khyrenz parseusbs up to 1.8 LNK File Parser parseUSBs.py os.popen os command injection
A vulnerability described as critical has been identified in khyrenz parseusbs up to 1.8. This vulnerability affects the function os.popen of the file parseUSBs.py of the component LNK File Parser. Such manipulation leads to os command injection.
This vulnerability is referenced as CVE-2026-40029. The attack can only be performed from a local environment. No exploit is available.
Upgrading the affected component is recommended.