SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-8164

HIGH · CVSS 7.3 EPSS 0.11%

Source: NVD + CISA KEV + EPSS · Published 2026-07-28 · Last synced 2026-08-27

CyberRota Analysis

AI-Generated

The ArkSigner Desktop Client is vulnerable to an uncontrolled search path element issue, allowing for search order hijacking, which could enable an attacker to execute malicious code. This vulnerability poses a high risk, particularly for organizations using affected versions from v2.2.16.10 to 17062026, and should be prioritized by users of ArkSigner software to mitigate potential exploitation.

CVE
CVE-2026-8164
Severity
HIGH
CVSS
7.3
EPSS
0.11%

Original NVD Description

Uncontrolled Search Path Element vulnerability in ArkSigner Software and Hardware Industry and Trade Inc. ArkSigner Desktop Client allows Search Order Hijacking. This issue affects ArkSigner Desktop Client: from v2.2.16.10 through 17062026.