OCTOBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-51990

CRITICAL · CVSS 9.8 EPSS 0.93%

Source: NVD + CISA KEV + EPSS · Published 2026-09-16 · Last synced 2026-10-07

CyberRota Analysis

AI-Generated

The Sogou Input Method versions prior to 16.3.0.3498 are vulnerable due to a flaw in the biz_helper.exe component, which can be exploited by remote attackers to execute arbitrary code. Organizations using this software should prioritize updating to the fixed version to mitigate potential security risks associated with unauthorized code execution.

CVE
CVE-2026-51990
Severity
CRITICAL
CVSS
9.8
EPSS
0.93%

Original NVD Description

An issue in Sogou Sogou Input Method < 16.3.0.3498 (fixed in 16.3.0.3498) allows a remote attacker to execute arbitrary code via the biz_helper.exe component