CVE-2026-92371
TeamViewer Full Client and Host for Linux prior version 15.82 contains an improper path validation vulnerability in the Cloud Session Recording (CSR) functionality. By exploiting a race condition during path validation and subsequent file access, a local authenticated attacker may cause privileged file operations in unintended locations on the affected system.
- Published Sep 29, 2026
- CVSS 7.0 high
- 0.1% chance of exploitation in the next 30 days (EPSS)