Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:35770
HistoryMay 30, 2022 - 6:53 a.m.

OS Command Injection

2022-05-3006:53:55
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14

0.005 Low

EPSS

Percentile

75.5%

rack is vulnerable to OS command injection. The vulnerability exists in log function in CommonLogger and Lint middleware because of the escape sequences which allows an attacker to execute shell commands.