Unknown · Genshi Template Engine · CVE-2026-0685
**Name of the Vulnerable Software and Affected Versions**
Genshi Template Engine version 0.7.9
**Description**
Server side template inject (SSTI) in the expression evaluation component allows a remote attacker to achieve remote code execution (RCE) via crafted template expressions. SSTI occurs when an attacker is able to inject malicious code into a template that is then executed on the server.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.