
Unauthenticated RCE (CVE-2026-25807) affects `ZAI-Shell` via its P2P sharing feature. Update `Taklaxbr ZAI-Shell` to mitigate this #RCE #Vulnerability for network-facing deployments. Details: https://www.pulsepatch.io/posts/cve-2026-25807-zai-shell-unauthenticated-rce
Post summary
CVE‑2026‑25807 is an unauthenticated remote code execution in ZAI‑Shell’s P2P sharing feature; updating to Taklaxbr ZAI‑Shell is advised to mitigate the vulnerability.


