CVE-2019-10906
07.04.2019, 00:29
In Pallets Jinja before 2.10.1, str.format_map allows a sandbox escape.Enginsight
Vendor | Product | Version |
---|---|---|
palletsprojects | jinja | 𝑥 < 2.10.1 |
canonical | ubuntu_linux | 12.04 |
canonical | ubuntu_linux | 14.04 |
canonical | ubuntu_linux | 16.04 |
canonical | ubuntu_linux | 18.04 |
canonical | ubuntu_linux | 18.10 |
canonical | ubuntu_linux | 19.04 |
redhat | software_collections | 1.0 |
opensuse | leap | 15.0 |
opensuse | leap | 42.3 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
References