HP Inc.CVE-2026-91106
HP Linux Imaging and Printing Software (HPLIP): remote code execution
Critical9.3CVE-2026-91106 · Published Sep 16, 2026 · updated Sep 21, 2026
HP has identified and remediated multiple externally reported vulnerabilities within HPLIP. The findings affect several software components that could potentially enable remote code execution, privilege escalation, denial of service, information disclosure, or unauthorized file modification under certain conditions.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| HP Linux Imaging and Printing Software (HPLIP) Product | < 3.26.6 | 3.26.6 |
Details and references
- CVSS 4.0
- CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
- Severity from
- the vendor (its own CVE record or advisory)
- Weakness
- CWE-122
More HP Inc. advisories
All HP Inc.| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Sep 16 | HP AC Print & Scan: privilege escalation | Critical9.3 | <V1R4.0.027+1 more |
| Sep 16 | HP AC Print & Scan: privilege escalation | Critical9.3 | <V1R4.0.027+1 more |
| Sep 16 | HP AC Print & Scan: privilege escalation | High8.8 | <V1R4.0.027+1 more |
| Sep 16 | HP Linux Imaging and Printing Software (HPLIP): remote code execution | High8.4 | 3.26.6 |
| Sep 16 | HP Linux Imaging and Printing Software (HPLIP): remote code execution | Medium5.1 | 3.26.6 |
| Sep 16 | HP Linux Imaging and Printing Software (HPLIP): remote code execution | Critical9.3 | 3.26.6 |