PatchSiren

Sogou CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL Sogou CVE published 2026-09-16

CVE-2026-51990

A critical vulnerability was found in Sogou Input Method version less than 16.3.0.3498. This issue allows remote attackers to execute arbitrary code via the biz_helper.exe component. The vulnerability has a CVSS score of 9.8 and is considered critical. Defenders responsible for managing and updating Sogou Input Method installations should assess exposure and prioritize updates to prevent potential code ex [truncated]