Description
Improper Control of Generation of Code ('Code Injection') vulnerability in Salesforce Uni2TS on MacOS, Windows, Linux allows Leverage Executable Code in Non-Executable Files.This issue affects Uni2TS: through 1.2.0.
Published: 2026-01-09
Score: 9.8 Critical
EPSS: < 1% Very Low
KEV: No
Impact: Remote Code Execution
Action: Immediate Patch
AI Analysis

Impact

The vulnerability in Salesforce Uni2TS arises from improper control over the generation of code, a true code injection flaw. An attacker who can manipulate input data to the application can cause executables to be generated or executed from files that were not originally marked as executable. This flaw enables arbitrary code execution, which can lead to full compromise of the affected system, including data theft, destruction, or the use of the host as a pivot point for further attacks.

Affected Systems

Salesforce Uni2TS installations on macOS, Windows, and Linux distributions the vulnerability affects all versions up through 1.2.0. Any deployment using the Uni2TS application in the specified operating systems is susceptible unless patched beyond the vulnerable release.

Risk and Exploitability

The flaw is assigned a high CVSS score of 9.8, indicating catastrophic potential. The EPSS score indicates a very low current exploitation probability (less than 1 percent), and at present the vulnerability is not listed in the CISA KEV catalog. When analyzed, it appears that the attack vector relies on the ability to introduce malicious code into files that the application processes and then cause those files to be executed as if they were binaries. Although exploitation would require the attacker to supply or gain control over sensitive files on the system, the high severity and proven code‑generation weakness make it a substantial threat if a local or managed code path is available.

Generated by OpenCVE AI on April 18, 2026 at 07:22 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade Salesforce Uni2TS to any version newer than 1.2.0
  • Identify and restrict locations where untrusted input files may be written or executed, ensuring they are not treated as executable code
  • Implement file integrity monitoring to detect unauthorized injection or modification of files in application directories

Generated by OpenCVE AI on April 18, 2026 at 07:22 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Github GHSA Github GHSA GHSA-7x99-8x99-xc54 Salesforce Uni2TS has a Code Injection vulnerability
History

Sat, 18 Apr 2026 07:45:00 +0000

Type Values Removed Values Added
Title Code Injection Allows Execution of Code from Non-Executable Files in Salesforce Uni2TS

Thu, 22 Jan 2026 23:00:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:salesforce:uni2ts:*:*:*:*:*:*:*:*

Mon, 12 Jan 2026 17:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 09 Jan 2026 22:15:00 +0000

Type Values Removed Values Added
Description Improper Control of Generation of Code ('Code Injection') vulnerability in Salesforce Uni2TS on MacOS, Windows, Linux allows Leverage Executable Code in Non-Executable Files.This issue affects Uni2TS: through 1.2.0.
First Time appeared Salesforce
Salesforce uni2ts
Weaknesses CWE-94
CPEs cpe:2.3:a:salesforce:uni2ts:*:*:linux:*:*:*:*:*
cpe:2.3:a:salesforce:uni2ts:*:*:macos:*:*:*:*:*
cpe:2.3:a:salesforce:uni2ts:*:*:windows:*:*:*:*:*
Vendors & Products Salesforce
Salesforce uni2ts
References

Subscriptions

Salesforce Uni2ts
cve-icon MITRE

Status: PUBLISHED

Assigner: Salesforce

Published:

Updated: 2026-01-12T16:23:58.916Z

Reserved: 2026-01-07T19:03:25.721Z

Link: CVE-2026-22584

cve-icon Vulnrichment

Updated: 2026-01-12T15:34:11.877Z

cve-icon NVD

Status : Analyzed

Published: 2026-01-09T22:16:01.160

Modified: 2026-01-22T21:48:05.130

Link: CVE-2026-22584

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-04-18T07:30:36Z

Weaknesses