9.3
/ 10
CRITICAL
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H
Description
electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. From 3.0.6 to 3.8.8, This vulnerability is fixed in 3.9.0.
AI Analysis
Local code execution vulnerability through electerm's single-instance socket
Basic Information
ID
CVE-2026-45353
Source
GitHub_M
Published
May 28, 2026 at 17:19
Affected Product
Vendor
electerm
Product
electerm
Version
>= 3.0.6, < 3.89.0
Affected Versions
electerm electerm >= 3.0.6, < 3.89.0
CWE Classification
AI Assessment
AI Score
9.3 / 10
AI Severity
Critical
Vendor
electerm
Product
electerm
Version
3.0.6 to 3.8.8