CVE-2024-39844: Znc

Critical severity, CVSS 9.8. EPSS: 3.9% chance of exploitation in the next 30 days.

In ZNC before 1.9.1, remote code execution can occur in modtcl via a KICK.

Affected products

  • Znc Znc: before 1.9.1 (fixed in 1.9.1)

Published 2024-07-03. Last modified 2026-06-17.