HIGH
Centuran Consulting
CVE published 2026-08-20
CVE-2026-53804
The OTRS Community Edition contains an authenticated OS command injection vulnerability in the PGP encryption module, allowing administrators to execute arbitrary operating-system commands. This vulnerability arises from concatenating administrator-supplied configuration values without sanitization into a shell command, enabling arbitrary command execution as the web server process user during normal tick [truncated]