OPENSUSE-SU-2026:21208-1
Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 02 Jul 2026, 07:07
Last modified:03 Jul 2026, 11:00
Vulnerability Summary
Overall Risk (default)
minimal
0/100 CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected
Timeline
02 Jul 2026, 07:07
Published
Vulnerability first disclosed
03 Jul 2026, 11:00
Last Modified
Vulnerability information updated
Description
Security update for cockpit This update for cockpit fixes the following issue - CVE-2026-4802: remote command execution via unsanitized user-controlled parameters within crafted links in system logs UI (bsc#1265040).
Affected Systems
- opensuse•cockpit&distro=openSUSE Leap 16.0
< 354-160000.4.1