CVE-2025-53637 | Meshtastic Firmware up to 2.6.5 GitHub Action main_matrix.yml os command injection (EUVD-2025-21075)
A vulnerability, which was classified as critical, has been found in Meshtastic Firmware up to 2.6.5. Affected by this issue is some unknown functionality of the file main_matrix.yml of the component GitHub Action Handler. The manipulation leads to os command injection.
This vulnerability is handled as CVE-2025-53637. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.