Lucene search

K
osvGoogleOSV:GHSA-4228-7QVX-F4RQ
HistoryMay 18, 2021 - 1:41 a.m.

Injection and Command Injection in devcert

2021-05-1801:41:56
Google
osv.dev
6

0.003 Low

EPSS

Percentile

68.8%

A command injection vulnerability in the devcert module may lead to remote code execution when users of the module pass untrusted input to the certificateFor function.

CPENameOperatorVersion
devcertlt1.1.2

0.003 Low

EPSS

Percentile

68.8%