Unknown · Grub-Btrfs · CVE-2026-25828
**Name of the Vulnerable Software and Affected Versions**
grub-btrfs versions through 2026-01-31
**Description**
The software does not properly sanitize the `root` parameter when resolving devices, leading to potential command injection within the initramfs environment. This could allow for unauthorized execution of operating system commands.
**Recommendations**
Update grub-btrfs to a version newer than 2026-01-31.