CVE-2026-42171: Nsis Insecure Temp Fallback
When standard temporary directory validations fail, this code falls back to an alternative temporary directory without checking execution privileges. This may lead to local privilege escalation if the directory is accessible to lower privileged users and the application is running as SYSTEM.
greprules fetch cve-2026-42171-nsis-insecure-temp-fallback --engine opengrepDescription
When standard temporary directory validations fail, this code falls back to an alternative temporary directory without checking execution privileges. This may lead to local privilege escalation if the directory is accessible to lower privileged users and the application is running as SYSTEM.
Community feedback
0 rule-level signals from signed-in users.
- Useful reports
- 0
- Context false positives
- 0
- Metadata suggestions
- 0
Contextual precision
Aggregated from approved scan feedback. False-positive reports describe observed scan contexts, not a global rule verdict.
- Findings observed
- 0
- Projects
- 0
- Reporters
- 0
Precision details are collecting more signed-in reports before verdict counts or ratios are emphasized.
No approved finding verdicts yet.
No scan diagnostics reported yet.