9.8
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Description
Server side template inject (SSTI) in the expression evaluation component in Genshi Template Engine version 0.7.9 allows a remote attacker to achieve remote code execution (RCE) via crafted template expressions.
AI Analysis
Server side template injection vulnerability allowing remote code execution
Basic Information
ID
CVE-2026-0685
Source
certcc
Published
Jun 26, 2026 at 15:45
Modified
Jun 26, 2026 at 17:36
Affected Product
Vendor
Edgewall
Product
Genshi
Version
0.7.9
Affected Versions
Edgewall *Genshi* Genshi 0
AI Assessment
AI Score
9.8 / 10
AI Severity
Critical
Vendor
Edgewall
Product
Genshi Template Engine
Version
0.7.9