CVE-2024-23347
16.01.2024, 18:15
Prior to v176, when opening a new project Meta Spark Studio would execute scripts defined inside of a package.json file included as part of that project. Those scripts would have the ability to execute arbitrary code on the system as the application.Enginsight
Vendor | Product | Version |
---|---|---|
meta_spark_studio | 𝑥 < 176 |
𝑥
= Vulnerable software versions