Mmahrous develops a narrowly scoped product portfolio centered on the Thumbler application, with observed vulnerabilities focusing on code-injection and OS-command-injection issues that reflect common risks in command-processing and dynamic-code-execution contexts. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Mmahrous over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-26833CRITICAL thumbler through 1.1.2 allows OS command injection via the input, output, time, or size parameter in the thumbnail() function because user input is concatenated into a shell comman | Mar 25, 2026 | 9.8 | 30 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Mmahrous.
Media articles that mention a CVE ID that affects a product developed by Mmahrous — matched by CVE ID, not by vendor name.