LOW 2.4 NVD

CVE-2026-90773

procs through 0.14.12 fails to sanitize escape sequences in process command lines before displaying them in the Command column. Local attackers can execute proc

procs through 0.14.12 fails to sanitize escape sequences in process command lines before displaying them in the Command column. Local attackers can execute processes with malicious ANSI or OSC escape sequences in their command line arguments, which are written unmodified to other users' terminals for interpretation by terminal emulators.

References

Published: 2026-09-13 · Source: NVD · Feed updated: 2026-09-13
This low severity vulnerability with a CVSS score of 2.4 was published on 2026-09-13 via NVD.
vulnfeed aggregates 13632 vulnerabilities from NVD, CISA KEV, Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.