Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 19 Aug 2026 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in chenhg5 cc-connect up to 1.4.1. Affected by this vulnerability is the function Authenticate of the file core/webhook.go. The manipulation of the argument exec results in code injection. The attack may be performed from remote. The exploit has been made public and could be used. The reported GitHub issue was closed automatically due to inactivity. | |
| Title | chenhg5 cc-connect webhook.go authenticate code injection | |
| First Time appeared |
Chenhg5
Chenhg5 cc-connect |
|
| Weaknesses | CWE-74 CWE-94 |
|
| CPEs | cpe:2.3:a:chenhg5:cc-connect:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Chenhg5
Chenhg5 cc-connect |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-08-19T22:45:14.415Z
Reserved: 2026-08-19T16:47:44.445Z
Link: CVE-2026-76760
No data.
Status : Received
Published: 2026-08-19T23:16:17.953
Modified: 2026-08-19T23:16:17.953
Link: CVE-2026-76760
No data.
OpenCVE Enrichment
No data.