Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 11 Aug 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Google Turbinia allows arbitrary command execution via worker tasks. An attacker with privileges to submit a processing request or influence an evidence path/name obtains code execution on the worker fleet. Fixed on 2026-07-10. | |
| Title | Google Turbinia arbitrary command execution | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: cisa-cg
Published:
Updated: 2026-08-11T15:56:32.091Z
Reserved: 2026-07-28T15:01:46.486Z
Link: CVE-2026-67180
No data.
Status : Received
Published: 2026-08-11T16:17:34.257
Modified: 2026-08-11T16:17:34.257
Link: CVE-2026-67180
No data.
OpenCVE Enrichment
No data.