CVE-2026-4946 - Vulnerability Analysis
HighCVSS: 8.8Last Updated: March 29, 2026
Ghidra - Command Injection
Overview
Ghidra < 12.0.3 contains a command injection caused by improper processing of @execute annotation directives in auto-extracted binary data, letting attackers execute arbitrary commands when analysts interact with the UI, exploit requires analyst interaction.
Severity & Score
Impact
Attackers can execute arbitrary commands on the analyst's machine, potentially leading to full system compromise.
Mitigation
Upgrade to version 12.0.3 or later.
References
Social Media Activity(4 posts)
š CVE-2026-4946: HIGH severity OS command injection in Ghidra <12.0.3. Crafted binaries can trigger arbitrary code via clickable @Execute annotations in the UI. Upgrade now & analyze unknown files in sandboxes. https://radar.offseq.com/threat/cve-2026-4946-cwe-78-improper-neutralization-of-sp-c53cae64 #OffSeq #Ghidra #BlueTeam
View original postš CVE-2026-4946 - High (8.8) Ghidra versions prior to 12.0.3 improperly process annotation directives embedded in automatically extracted binary data, resulting in arbitrary command execution when an analyst interacts with the UI. Specifically, the @execute annotation (which ... š https://www.thehackerwire.com/vulnerability/CVE-2026-4946/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
View original postš CVE-2026-4946: HIGH severity OS command injection in Ghidra <12.0.3. Crafted binaries can trigger arbitrary code via clickable @Execute annotations in the UI. Upgrade now & analyze unknown files in sandboxes. https://radar.offseq.com/threat/cve-2026-4946-cwe-78-improper-neutralization-of-sp-c53cae64 #OffSeq #Ghidra #BlueTeam
View original postš CVE-2026-4946 - High (8.8) Ghidra versions prior to 12.0.3 improperly process annotation directives embedded in automatically extracted binary data, resulting in arbitrary command execution when an analyst interacts with the UI. Specifically, the @execute annotation (which ... š https://www.thehackerwire.com/vulnerability/CVE-2026-4946/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
View original postRelated Resources
Details
- CVE ID
- CVE-2026-4946
- Severity
- High
- CVSS Score
- 8.8
- Type
- command_injection
- Status
- new
- EPSS
- 0.0%
- Social Posts
- 4
CWE
- CWE-78
CVSS Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H