Security Advisory

CVE-2021-23412

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-07-23 16:00:13
Last updated 2024-09-16 19:50:57
Assigner snyk
State PUBLISHED

Description

All versions of package gitlogplus are vulnerable to Command Injection via the main functionality, as options attributes are appended to the command to be executed without sanitization.