Command Injection in git-dummy-commit
Critical severity
GitHub Reviewed
Published
Aug 21, 2018
to the GitHub Advisory Database
•
Updated Feb 3, 2023
Description
Published by the National Vulnerability Database
Aug 17, 2018
Published to the GitHub Advisory Database
Aug 21, 2018
Reviewed
Jun 16, 2020
Last updated
Feb 3, 2023
A command injection in git-dummy-commit v1.3.0 allows os level commands to be executed due to an unescaped parameter.
References