CVE-2026-53694: Nomachine
High severity, CVSS 7.3. EPSS: 0.2% chance of exploitation in the next 30 days.
Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability in Nomachine allows Argument Injection.This issue affects Nomachine: before 9.5.7, before 8.23.2.
Affected products
- Nomachine Nomachine: from 7.0.0, before 9.5.7 (fixed in 9.5.7); from 7.0.0, before 8.23.2 (fixed in 8.23.2)
Published 2026-06-10. Last modified 2026-07-07.