Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
10.0
CVE-2026-48056: Streambert Vulnerable to Malicious File Execution
CVE-2026-48056 · published 24 days ago
Summary
Streambert, a video streaming app, has a security issue where a hacker could run any program on your computer with the app's permissions. This is a concern because it could lead to data theft or system damage. To fix this, update Streambert to version 2.5.0 or later.
What to do
The CVE record does not list a fixed version. Check the vendor's site or the advisory links below - a fix may already be released.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| truelockmc | streambert | < 2.5.0 |
Original advisory text
Streambert Vulnerable to Arbitrary Binary Execution via Downloader IPC Handler
Streambert is a cross-platform Electron Desktop App to stream and download video content. Versions prior to 2.5.0 improperly validate executable paths supplied to the run-download IPC handler, allowing a compromised renderer process to execute arbitrary local binaries with the application’s privileges. Version 2.5.0 contains a patch.
References
- https://github.com/truelockmc/streambert/security/advisories/GHSA-x267-77m6-qjc9 x_refsource_CONFIRM
- https://github.com/truelockmc/streambert/releases/tag/2.5.0 x_refsource_MISC
Severity
10.0
Critical
CVSS 3.1: 10.0 (MITRE)
Exploitation
EPSS <1%
Type
CWE-20Improper Input Validation
CWE-749Exposed Dangerous Method or Function
Timeline
Published11 Aug 2026
Updated30 Aug 2026
First seen11 Aug 2026
Monitor software like this
Free during beta