CVE-2025-66002: Https://github.com/kde/ SMB4K
Medium severity, CVSS 6.9. EPSS: 0.2% chance of exploitation in the next 30 days.
An Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability allows local users ton perform arbitrary unmounts via smb4k mount helper
Affected products
- Https://github.com/kde/ SMB4K
Published 2026-01-08. Last modified 2026-09-30.