CYBERHAWK / CVE / CVE-2026-49492

CVE-2026-49492

HIGH CVSS 8.8 other

The flaw

Markdown Preview Enhanced before 0.8.28 opens external files and links from the preview through a shell and does not validate untrusted inputs taken from the markdown document - the diagram filename attribute, imported file paths, and the l

What to do

Review advisory and patch per vendor guidance.

▸ Scan my repo for CVE-2026-49492

References

First seen 2026-06-12 · Tracked by PickBits CyberHawk · Weekly CVE digest