RPG MAKER MV and MZ provided by Gotcha Gotcha Games Inc. contain an OS command injection vulnerability. If a user loads a specially crafted save-file, arbitrary OS command may be executed.
Metrics
Affected Vendors & Products
References
History
Tue, 30 Jun 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | OS Command Injection via Malicious Save File in RPG MAKER MV and MZ |
Tue, 30 Jun 2026 07:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | RPG MAKER MV and MZ provided by Gotcha Gotcha Games Inc. contain an OS command injection vulnerability. If a user loads a specially crafted save-file, arbitrary OS command may be executed. | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2026-06-30T06:02:47.607Z
Reserved: 2026-06-19T05:52:27.686Z
Link: CVE-2026-56137
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-30T08:30:04Z