CVE-2026-9155EPSS p56.9%

CVE-2026-9155CVE-2026-9155

gnu / sed

Description

OS Command Injection vulnerability in Rapid7 InsightConnect Sed Plugin on Linux allows authenticated attackers to execute arbitrary OS commands via the expression parameter due to insufficient input validation.

Scoring

CVSS 8.8 ()
VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS0.92% probability of exploitation · percentile 56.9% · 2026-08-11T12:00:17Z
Last modified2026-06-27
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.