CVE-2026-67979
Critical severity, CVSS 9.1. EPSS: 0.5% chance of exploitation in the next 30 days.
Incorrect access control in the Executive Services dynamic application start path component of NASA cFS v7.0.1 allows attackers to execute arbitrary code via placing a shared object on target storage.
Published 2026-08-04. Last modified 2026-08-31.