CVE-2026-16287: Tubitak Bilgem Software Technologies Research Institute Pardus-Update

High severity, CVSS 7.8. EPSS: 0.8% chance of exploitation in the next 30 days.

Improper neutralization of special elements used in an OS command ('OS command injection') vulnerability in TUBITAK BILGEM Software Technologies Research Institute pardus-update allows OS Command Injection. This issue affects pardus-update: from 0.6.6 before 0.7.0.

Affected products

Published 2026-07-23. Last modified 2026-07-23.