cvedb.io
CVE-2026-34977
CRITICAL · CVSS 9.8
EPSS exploitation probability: 0%
Published 2026-04-06T17:17:11.543 · Last modified 2026-06-23T00:16:27.723

Summary

Aperi'Solve is an open-source steganalysis web platform. In versions 3.1.3 through 3.2.0, when uploading a JPEG, a user can specify an optional password to accompany the JPEG. This password is then directly passed into an expect command, which is then subsequently passed into a bash -c command, without any form of sanitization or validation. An unauthenticated attacker can achieve root-level RCE inside the worker container with a single HTTP request, enabling full read/write access to all user-uploaded images, analysis results, and plaintext steganography passwords stored on disk. Because the container shares a Docker network with PostgreSQL and Redis (no authentication on either), the attacker can pivot to dump the entire database or manipulate the job queue to poison results for other us

Affected products

aperisolve — aperisolve

Does this affect you?

Add your gear to cvedb and we'll alert you only when aperisolve ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.