{"id":"CVE-2026-87898","published":"2026-09-23T20:17:20.340","lastModified":"2026-09-24T21:16:28.120","description":"OS command injection in Plesk allows remote authenticated users to execute arbitrary code with root privileges.","cvssScore":null,"cvssSeverity":null,"cvssVector":null,"cwes":["CWE-78"],"vendors":[],"products":[],"references":[{"url":"https://support.plesk.com/hc/en-us/articles/43641151026583","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":null}