CVE-2026-35463 | pyLoad up to 0.5.0b3.dev96 AntiVirus Plugin subprocess.Popen os command injection (GHSA-w48f-wwwf-f5fr)
A vulnerability labeled as critical has been found in pyLoad up to 0.5.0b3.dev96. This affects the function subprocess.Popen of the component AntiVirus Plugin. The manipulation results in os command injection.
This vulnerability is cataloged as CVE-2026-35463. The attack may be launched remotely. There is no exploit available.
It is advisable to implement a patch to correct this issue.