CVE-2026-103511EPSS p23.9%

CVE-2026-103511CVE-2026-103511

Description

Perforce P4 Search prior to 2026.4.2 does not validate file names supplied to its extension installation feature. An attacker with super-user or service-token privileges can write files with arbitrary content to the P4 Search installation directory.

Scoring

EPSS0.33% probability of exploitation · percentile 23.9% · 2026-10-10T12:00:23Z
Last modified2026-10-06
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.