CVE-2026-53633 | vitest-dev Vitest up to 3.2.4/4.1.7/5.0.0-beta.3 Browser Mode vite.config.ts cdp os command injection
A vulnerability marked as critical has been reported in vitest-dev Vitest up to 3.2.4/4.1.7/5.0.0-beta.3. This affects the function cdp of the file vite.config.ts of the component Browser Mode. The manipulation leads to os command injection.
This vulnerability is referenced as CVE-2026-53633. Remote exploitation of the attack is possible. No exploit is available.