CVE-2024-51366: Omegat

Critical severity, CVSS 9.8. EPSS: 0.7% chance of exploitation in the next 30 days.

An arbitrary file upload vulnerability in the component \Roaming\Omega of OmegaT v6.0.1 allows attackers to execute arbitrary code via uploading a crafted .conf file.

Affected products

  • Omegat Omegat: version 6.0.1 only

Published 2024-11-21. Last modified 2026-07-05.