PT-2026-23654 · Unknown · Bee Swarm Simulator+2

Datauwu

·

Published

2026-03-06

·

Updated

2026-03-06

·

CVE-2026-28801

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Natro Macro versions prior to 1.1.0
Description Natro Macro, an open-source Bee Swarm Simulator macro written in AutoHotkey, allows execution of arbitrary AutoHotkey code contained within pattern or path files in versions prior to 1.1.0. An attacker could share a malicious file, which, when used by a user, would execute the attacker’s code in the background. This code can perform actions determined by the attacker.
Recommendations Update to version 1.1.0 or later.

Exploit

Fix

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2026-28801
GHSA-C5GM-VFVF-PWHX

Affected Products

Autohotkey
Bee Swarm Simulator
Natromacro