CVE-2026-7246
Pallets Click Click, Red Hat Ansible Automation Platform 2.5 for RHEL 8, Red Hat Ansible Automation Platform 2.5 for RHEL 9
Pallets Click, versions 8.3.2 and below, contain a command injection vulnerability in the click.edit() function, allowing attackers to pass arbitrary OS commands from an unprivileged account.
- CVSS
- 7.2
- EPSS
- 0.81% 52.7% percentile
- CISA KEV
- Not listed
- Published
- 2026.04.30