CVE-2026-56137EPSS p49.1%
CVE-2026-56137CVE-2026-56137
Description
RPG MAKER MV and MZ provided by Gotcha Gotcha Games Inc. contain an OS command injection vulnerability. If a user loads a specially crafted save-file, arbitrary OS command may be executed.
Scoring
| CVSS | 7.8 () |
| Vector | CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
| EPSS | 0.68% probability of exploitation · percentile 49.1% · 2026-08-14T12:00:27Z |
| Last modified | 2026-06-30 |