CVE-2024-28886
EUVD-2024-3443228.05.2024, 03:15
OS command injection vulnerability exists in UTAU versions prior to v0.4.19. If a user of the product opens a crafted UTAU project file (.ust file), an arbitrary OS command may be executed.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| ameya_ayame | utau | 𝑥 < 0.4.19 | ADP |