search
Bazel
Trends
- 1Renovate tool patched over remote code execution flawโ๐จ EUVD-2026-62467 ๐ Score: 6.8/10 (CVSS v3.1) ๐ฆ Product: renovate ๐ข Vendor: renovatebot ๐ Published: 2026-08-19 | Update
A medium-severity vulnerability, tracked as EUVD-2026-62467 with a CVSS score of 6.8, was disclosed in Renovate, the dependency update tool maintained by renovatebot. Versions from 43.65.0 before 43.102.11 contain a remote code execution flaw affecting the bazel-module and bazelisk managers. The advisory was published on 19 August 2026 and updated on 29 September, and administrators are urged to upgrade to a fixed release.