CVE-2026-8164: Uncontrolled Search Path Element vulnerability in ArkSigner Software and Hardware Industry and Trade Inc. ArkSigner Desktop Client allows Search Order Hijacking. This issue affect
Uncontrolled Search Path Element vulnerability in ArkSigner Software and Hardware Industry and Trade Inc. ArkSigner Desktop Client allows Search Order Hijacking.
This issue affects ArkSigner Desktop Client: from v2.2.16.10 through 17062026.
Details
Original advisory: https://nvd.nist.gov/vuln/detail/CVE-2026-8164
Exploitation outlook
EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.
- Low exploitation riskCVE-2026-81640.11% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 1% of all EPSS-scored CVEs.
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-8164 | coverage & exploitation status | NVD · CVE.org |
Recent advisories for Uncontrolled Search Path
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- mediumCVE-2026-66344: NetKids iMark, provided by Integrated Systems Technologies, Inc., contains an Uncontrolled Sea…nvd · 2026-08-05
- highCVE-2026-18657: An uncontrolled search path element in Kiro CLI before version 2.10.0 on Windows might allow a…nvd · 2026-08-04
- highCVE-2026-18656: An uncontrolled search path element in Kiro IDE before version 1.0.228 on Windows might allow …nvd · 2026-08-04
- highCVE-2026-48388: Adobe Photoshop Installer was affected by an Uncontrolled Search Path Element vulnerability th…nvd · 2026-07-28
- highGHSA-7g7r-gx96-252g: electron-updater: Uncontrolled search path elements within `AppImage` built by `app-build…ghsa · 2026-07-24
- highCVE-2026-48272: Creative Cloud Desktop is affected by an Uncontrolled Search Path Element vulnerability that c…nvd · 2026-07-14
More from NVD Recent CVEs
- unknownCVE-2026-66909: Apache CXF's JMS transport deserializes the body of any inbound JMS ObjectMessage using native…2026-08-06
- unknownCVE-2026-65432: Apache CXF reads a top-level WSDL through its hardened StaxUtils path, which disables XML DTDs…2026-08-06
- unknownCVE-2026-64958: An incomplete fix for CVE-2026-50645 means that it is still possible to perform a denial of se…2026-08-06
- unknownCVE-2026-57819: Apache CXF allows to set a limit on the number of form parameters in a JAX-RS message via the …2026-08-06
- unknownCVE-2026-57817: The OpenID Connect Core 1.0 specification mandates that the RP MUST validate the `c_hash` para…2026-08-06