CVE-2026-40556
LOWInsecure Directory Permissions in GNU nano Leading to Privilege Abuse
Title source: cnaDescription
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Scores
CVSS v4
2.1
CVSS:4.0/AV:L/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-732
Status
published
Products (1)
GNU/nano
2.9.1 - 9.0
Published
Apr 28, 2026
Tracked Since
Apr 28, 2026