CYBERHAWK / CVE / CVE-2026-29514

CVE-2026-29514

NetBox

HIGH CVSS 8.8 vibe oss

The flaw

Remote code execution via malicious Python callables in environment_params field bypassing Jinja2 sandbox.

What to do

Update NetBox to version 4.6.0 or later

▸ Scan my repo for CVE-2026-29514

References

First seen 2026-05-08 · Tracked by PickBits CyberHawk · Weekly CVE digest