Xddxdd maintains Bird LG Go, a niche network diagnostic and route lookup web interface that exposes command-line routing tools through a web frontend. The vendor's observed vulnerability signal centers on argument injection in command construction, a common risk when bridging user input to shell execution without proper sanitization. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Xddxdd over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-26514HIGH An Argument Injection vulnerability exists in bird-lg-go before commit 6187a4e. The traceroute module uses shlex.Split to parse user input without validation, allowing remote attac | Mar 4, 2026 | 7.5 | 25 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Xddxdd.
Media articles that mention a CVE ID that affects a product developed by Xddxdd — matched by CVE ID, not by vendor name.