Beveiligingsadvies

CVE-2024-23347

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-01-16 17:57:20
Laatst bijgewerkt 2025-06-20 17:54:46
Toegewezen door facebook
CVSS-score 7.8
Status PUBLISHED

Beschrijving

Prior to v176, when opening a new project Meta Spark Studio would execute scripts defined inside of a package.json file included as part of that project. Those scripts would have the ability to execute arbitrary code on the system as the application.