A vulnerability described as problematic has been identified in neurobin shc up to 4.0.3. Impacted is the function make of the file src/shc.c of the component Environment Variable Handler. The manipulation results in os command injection.

This vulnerability is identified as CVE-2025-9176. The attack is only possible with local access. Additionally, an exploit exists.