216.73.216.6

CVE-2026-22314

· Published 20/05/2026 11:16 · Modified 20/05/2026 14:03

Labels: CVE-2026-22314 2026-05-20CVE-2026-22314CWE-94a6d3dc9e-0591-4a13-bce7-0f5b31ff6158

Essential information

Published
20/05/2026 11:16
Modified
20/05/2026 14:03
Author
Creator
CVSS
9.0 CRITICAL (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H

CVSS metrics

Description

Improper Control of Generation of Code ('Code Injection') vulnerability in Mesalvo Meona Client Launcher Component, Mesalvo Meona Server Component enables code execution on other users' systems. This issue affects Meona Client Launcher Component: through 19.06.2020 15:11:49; Meona Server Component: through 2025.04 5+323020.

NVD status

Status
Deferred — CVE has been recently published to the CVE List and has been received by the NVD.
Source
a6d3dc9e-0591-4a13-bce7-0f5b31ff6158
NVD
View on NVD

Affected products (CPE)

ProductCPE
mesalvo / meona client launcher cpe:2.3:a:mesalvo:meona_client_launcher:*:*:*:*:*:*:*:*
mesalvo / meona server cpe:2.3:a:mesalvo:meona_server:<2025.04:*:*:*:*:*:*

References