CVE-2026-33277: Jpcert Logontracer

High severity, CVSS 8.7. EPSS: 2.3% chance of exploitation in the next 30 days.

An OS command Injection issue exists in LogonTracer prior to v2.0.0. An arbitrary OS command may be executed by a logged-in user.

Affected products

  • Jpcert Logontracer: before 2.0.0 (fixed in 2.0.0)

Published 2026-04-27. Last modified 2026-06-17.