Track vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
8.6
CVE-2026-84462: Zammad lets admin run code on server
CVE-2026-84462 · published 15 days ago
Summary
The Zammad help‑desk system before version 7.1.2 lets a user with admin rights edit an AI Agent and insert specially crafted text that bypasses a safety filter. When the AI Agent processes a ticket, the malicious text can cause the server to execute any command, exposing or destroying all stored data. Upgrade to Zammad 7.1.2 or later to close the risk.
What to do
The CVE record does not list a fixed version. Check the vendor's site or the advisory links below - a fix may already be released.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| zammad | zammad | < 7.1.2 |
Original advisory text
Zammad: AI Agent template sanitizer bypass leads to remote code execution
Zammad is a web based open source helpdesk/customer support system. Prior to 7.1.2, a security filter that protects Zammad's AI Agent configuration can be bypassed by entering specially crafted text into one of an AI Agent's fields. An administrator with permission to create or edit AI Agents could exploit this to run arbitrary commands on the server that hosts Zammad, potentially reading, modifying, or destroying all data stored on that server. No interaction from other users is needed; the malicious code runs automatically the next time the affected AI Agent processes a ticket. This issue is fixed in version 7.1.2.
References
- https://github.com/zammad/zammad/security/advisories/GHSA-gp3x-9xm8-rcj6
- https://github.com/zammad/zammad/commit/e3b0c8df91ad2108c8305be23e8fe6f73fb9718d
- https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/84xxx/CVE-2026-84462... Vendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2026-84462 Vendor Advisory
Internet-facing
14 days
Internal
At next upgrade
- Not known to be exploited
- Needs hands-on effort to exploit
- Gives an attacker full control
Type
CWE-20Improper Input Validation
CWE-94Code Injection
CWE-1336Improper Neutralization of Special Elements Used in a Template Engine
Timeline
Published25 Sep 2026
Updated9 Oct 2026
First seen25 Sep 2026
Track software like this
Free during beta