CVE-2026-102937: virtualenv: Command injection via --prompt in activate.bat (batch activator)

Overview

Severity
N/A
Exploit Status
Not Exploited
Patch Tuesday
2026-Sep
Released
2026-10-03
EPSS Score
0.14% (percentile: 2.8%)

Affected Products (2)

Other

  • 21812-17084
  • 21846-17084

Revision History

  • 2026-10-03: Information published.