CVE-2026-33046 | Indico up to 3.3.11 LaTeX indico.conf os command injection (GHSA-rm2q-f7jv-3cfp)
A vulnerability identified as critical has been detected in Indico up to 3.3.11. The affected element is an unknown function of the file indico.conf of the component LaTeX Handler. The manipulation leads to os command injection.
This vulnerability is referenced as CVE-2026-33046. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.