PatchSiren

Swiss Federal Office of Information Technology, Systems and Telecommunication CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Swiss Federal Office of Information Technology, Systems and Telecommunication CVE published 2026-08-05

CVE-2026-16022

The @oblique/cli 15.4.0 contains an OS command injection vulnerability in the project creation functionality. This vulnerability allows an attacker to execute additional operating-system commands when the CLI is invoked with a crafted project name. The CVE record was published on 2026-08-05T13:20:39.450Z and has not been modified since then. Organizations should be aware of this vulnerability and take ste [truncated]