CVE-2026-56137: Gotcha Gotcha Games Inc Rpg Maker Mv
High severity, CVSS 8.4. EPSS: 1.1% chance of exploitation in the next 30 days.
RPG MAKER MV and MZ provided by Gotcha Gotcha Games Inc. contain an OS command injection vulnerability. If a user loads a specially crafted save-file, arbitrary OS command may be executed.
Affected products
- Gotcha Gotcha Games Inc Rpg Maker Mv: up to and including 1.6.3
- Gotcha Gotcha Games Inc Rpg Maker Mz: up to and including 1.10.0
Published 2026-06-30. Last modified 2026-06-30.