Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:36488
HistoryJul 26, 2022 - 12:31 a.m.

Injection Vulnerability

2022-07-2600:31:08
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

0.0004 Low

EPSS

Percentile

14.3%

go has injection vulnerability. The vulnerability exists due to a lack of sanitization in Cmd.Start in os/exec allowing execution of any binaries in the working directory named either “…com” or “…exe” by calling Cmd.Run, Cmd.Start, Cmd.Output, or Cmd.CombinedOutput when Cmd.Path is unset.