Filtered by vendor Balena-io Subscriptions
Filtered by product Etcher Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2026-30332 1 Balena-io 1 Etcher 2026-04-03 7.5 High
A Time-of-Check to Time-of-Use (TOCTOU) race condition vulnerability in Balena Etcher for Windows prior to v2.1.4 allows attackers to escalate privileges and execute arbitrary code via replacing a legitimate script with a crafted payload during the flashing process.