CVE-2026-16606

Severity CVSS v4.0:
CRITICAL
Type:
CWE-94 Code Injection
Publication date:
22/07/2026
Last modified:
22/07/2026

Description

A vulnerability in Fujitsu Software Linux openFT and Fujitsu Software Oracle Solaris openFT before version 12.1D00 allows for unauthenticated remote code execution (pre-auth RCE) on GNU/Linux or Oracle Solaris. The Fsas Technologies PSIRT obtained that intelligence internally and covers the CVE beyond its CNA scope under existing agreement with Fujitsu Germany.