CVE-2026-27728 | oneuptime up to 10.0.6 performTraceroute os command injection (GHSA-jmhp-5558-qxh5)
A vulnerability, which was classified as critical, has been found in oneuptime up to 10.0.6. This affects the function performTraceroute. Performing a manipulation results in os command injection.
This vulnerability is reported as CVE-2026-27728. The attack is possible to be carried out remotely. No exploit exists.
It is advisable to upgrade the affected component.