216.73.217.22

CVE-2026-22584

· Published 09/01/2026 23:16 · Modified 17/04/2026 12:47 · Author: The MITRE Corporation

Labels: CVE-2026-22584 2026-01-09CVE-2026-22584CWE-94[email protected]

Essential information

Published
09/01/2026 23:16
Modified
17/04/2026 12:47
Author
The MITRE Corporation
Creator
The MITRE Corporation
CVSS
9.8 CRITICAL (v3.1)
CISA KEV
No
CWE
EPSS (First)
P7.6% ?EPSS percentile: rank of this vulnerability versus all others. Higher percentile = more likely to be exploited. Learn more (score 0.00029)
CVSS vector
CVSS:3.1/AV:N/C:H/I:H/A:H

CVSS metrics

Description

Improper Control of Generation of Code ('Code Injection') vulnerability in Salesforce Uni2TS on MacOS, Windows, Linux allows Leverage Executable Code in Non-Executable Files.This issue affects Uni2TS: through 1.2.0.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
salesforce / uni2ts cpe:2.3:a:salesforce:uni2ts:<1.2.0:*:*:*:*:*:*:*

References