securityonline.info 5/25/2026, 2:21:19 AM · external

Kopia backup tool patched after remote code execution flaw found

Kopia backup tool patched after remote code execution flaw found
CyberSIXT Evidence Panel
Primary Source github.com
CISA KEV Not in KEV
Patch Patch Status Unknown

THE content discusses a critical security vulnerability in Kopia, an open-source backup tool, tracked as CVE-2026-45695. This vulnerability allows remote code execution through command injection due to flawed handling of external requests when the server operates without password protection. The bug affects Kopia versions 0.22.3 and earlier; versions 0.23.0 and above have been patched. Immediate remediation actions include upgrading to the latest version or applying architectural mitigations to reduce exposure.

View Primary Source Via securityonline.info

Article by CyberSIXT