Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:33749
HistoryJan 18, 2022 - 3:18 p.m.

Command Injection

2022-01-1815:18:32
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14

0.001 Low

EPSS

Percentile

42.2%

firefox-esr is vulnerable to command injection. The constructed curl command from the Copy as curl feature in DevTools is not correctly escaped from PowerShell, allowing an attacker to inject and execute malicious commands