PowerJob versions 4.x through 5.1.2 contain an unauthenticated remote code execution vulnerability in the /friend/process endpoint of the Server-Worker transport layer
History

Fri, 04 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
First Time appeared Powerjob
Powerjob powerjob
Vendors & Products Powerjob
Powerjob powerjob

Fri, 04 Sep 2026 17:15:00 +0000

Type Values Removed Values Added
Title Unauthenticated Remote Code Execution in PowerJob Server-Worker /friend/process Endpoint
Weaknesses CWE-284
CWE-94

Fri, 04 Sep 2026 15:45:00 +0000

Type Values Removed Values Added
Description PowerJob versions 4.x through 5.1.2 contain an unauthenticated remote code execution vulnerability in the /friend/process endpoint of the Server-Worker transport layer
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2026-09-04T00:00:00.000Z

Updated: 2026-09-04T15:40:03.578Z

Reserved: 2026-08-17T00:00:00.000Z

Link: CVE-2026-75429

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2026-09-04T16:17:59.290

Modified: 2026-09-08T19:42:20.313

Link: CVE-2026-75429

cve-icon Redhat

No data.