Skip to content

CVE lookup

CVE-2026-66902

Pruva has a verified reproduction for CVE-2026-66902: Google::Auth for Perl command injection: external_account credentials JSON executable run via ungated system() → RCE. The canonical evidence record is REPRO-2026-00323.

REPRO

REPRO-2026-00323

Package

Unknown

Severity

CRITICAL

Status

published