Vulnerability Description
luci-app-tailscale-community contains a command injection vulnerability in the tailscale.do_login RPC method that allows authenticated users to execute arbitrary commands as root. The vulnerability exists because user-controlled loginserver and loginserver_authkey parameters are improperly quoted within a double-quoted shell command, allowing shell substitutions like $() to be evaluated by the outer shell before argument processing.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- https://github.com/openwrt/luci/security/advisories/GHSA-xwc5-mx58-rh35
- https://www.vulncheck.com/advisories/luci-app-tailscale-community-command-inject
- https://github.com/openwrt/luci/security/advisories/GHSA-xwc5-mx58-rh35
FAQ
What is CVE-2026-57999?
CVE-2026-57999 is a vulnerability with a CVSS score of 8.8 (HIGH). luci-app-tailscale-community contains a command injection vulnerability in the tailscale.do_login RPC method that allows authenticated users to execute arbitrary commands as root. The vulnerability ex...
How severe is CVE-2026-57999?
CVE-2026-57999 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-57999?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.