1. systeminformation npm Package Patches Critical Linux Command Injection Flaw in networkInterfaces() — CVE-2026-44724
A critical command injection vulnerability has been identified and patched in the `systeminformation` npm package, affecting versions prior to 5.31.6. Tracked as CVE-2026-44724 (GHSA-hvx9-hwr7-wjj9), the flaw enables remote code execution on Linux systems through the `networkInterfaces()` function when processing unsan...