CVE-2021-23412
23.07.2021, 16:15
All versions of package gitlogplus are vulnerable to Command Injection via the main functionality, as options attributes are appended to the command to be executed without sanitization.
Vendor | Product | Version |
---|---|---|
gitlogplus_project | gitlogplus | 3.1.3 |
gitlogplus_project | gitlogplus | 3.1.4 |
gitlogplus_project | gitlogplus | 3.1.5 |
gitlogplus_project | gitlogplus | 3.1.6 |
gitlogplus_project | gitlogplus | 3.1.7 |
𝑥
= Vulnerable software versions