← Back to browse · API

CVE-2026-48056

Severity
CRITICAL
CVSS
10.0
EPSS
0.00379
Risk score
40.13
CISA KEV
No
PoC
No
Published
2026-08-11
Modified
2026-08-11
First seen
2026-08-11
Aliases
EUVD-2026-56148
Products
truelockmc:streambert < 2.5.0
Sources
euvd EUVD-2026-56148
nvd CVE-2026-48056

Description

Streambert is a cross-platform Electron Desktop App to stream and download video content. Versions prior to 2.5.0 improperly validate executable paths supplied to the  run-download  IPC handler, allowing a compromised renderer process to execute arbitrary local binaries with the application’s privileges. Version 2.5.0 contains a patch.

References