Lucene search

K
osvGoogleOSV:GHSA-J28R-J54M-GPC4
HistoryOct 05, 2021 - 5:53 p.m.

Code Injection in SLO Generator

2021-10-0517:53:59
Google
osv.dev
20
code injection
yaml files
slo generator upgrade

EPSS

0.001

Percentile

30.7%

SLO generator allows for loading of YAML files that if crafted in a specific format can allow for code execution within the context of the SLO Generator. We recommend upgrading SLO Generator past https://github.com/google/slo-generator/pull/173

EPSS

0.001

Percentile

30.7%