Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

Rootio-Python3.11: Unauthenticated Remote Code Injection

ROOT-OS-DEBIAN-12-CVE-2026-0672
Summary

The Rootio-Python3.11 package has a vulnerability that allows an attacker to execute malicious code without needing a password. This could potentially let an attacker access your system and steal sensitive information. Update to the latest version of Rootio-Python3.11 to fix this issue.

What to do
  • Update rootio-python3.11 to version 3.11.2-6+deb12u6.root.io.25.
Affected software
VendorProductAffected versionsFix available
– rootio-python3.11 <= 3.11.2-6+deb12u6.root.io.25 3.11.2-6+deb12u6.root.io.25
Original title
CVE-2026-0672 in rootio-python3.11 - Patched by Root
Original description
Root has patched CVE-2026-0672 in the rootio-python3.11 package for Root:Debian:12. Multiple fixed versions available.
Published: 10 Mar 2026 · Updated: 13 Mar 2026 · First seen: 10 Mar 2026