SEPTEMBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-14448

HIGH · CVSS 7.2 EPSS 0.77% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-07-20 · Last synced 2026-08-19

CyberRota Analysis

AI-Generated

An authenticated remote attacker can exploit a command injection vulnerability in the system_certificates view, potentially leading to a complete compromise of confidentiality, availability, and integrity of the affected system. Organizations utilizing this feature should prioritize patching to mitigate the risk of exploitation. This vulnerability poses a significant threat to any environment where sensitive data and system integrity are critical.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-14448
Severity
HIGH
CVSS
7.2
EPSS
0.77%

Original NVD Description

An high privileged remote attacker can exploit an authenticated OS command injection vulnerability in the system_certificates view due to improper neutralization of special elements in an OS command. This can result in a total loss of confidentiality, availability and integrity.