Skip to content

CVE-2026-41991

CVE

Threat entity extracted from intelligence sources

Frequency
6
occurrences
First Seen
July 6, 2026
Last Seen
September 8, 2026
API
Exploited in Wild
—
Ransomware Use
—
Public Exploits
—
Attack Vector
—

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

Two critical vulnerabilities were discovered in Gzip's gzexe utility and file handling. CVE-2026-41991 allows local attackers to overwrite arbitrary files via a predictable temporary file path. CVE-2026-41992 can lead to denial of service or exposure of sensitive information due to improper handling...

Oracle has released multiple security updates for its Linux distributions, addressing several critical vulnerabilities. Key updates include patches for CVE-2026-59090 and CVE-2026-18301 in GIMP, and multiple CVEs in FreeRDP, libssh, and Grafana. Affected systems include Oracle Linux 8, 9, and 10, wi...

Recent vulnerabilities in Gzip, discovered by Michał Majchrowicz, Marcin Wyczechowski, and Elias Hasas, affect systems using the gzexe utility. The vulnerabilities include CVE-2026-41991, where insecure temporary file creation could allow local attackers to overwrite arbitrary files, and CVE-2026-41...

Public Exploits

Checking GitHub for proof-of-concept code…