Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2hm7-3qf5-g28w

Опубликовано: 12 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 8.9
CVSS3: 9.8

Описание

A remote code execution (RCE) vulnerability via crafted extension publisher-url/additional-urls could be abused by a malicious extension in Docker Desktop before 4.34.2.

A remote code execution (RCE) vulnerability via crafted extension publisher-url/additional-urls could be abused by a malicious extension in Docker Desktop before 4.34.2.

EPSS

Процентиль: 86%
0.03113
Низкий

8.9 High

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 9.8
nvd
больше 1 года назад

A remote code execution (RCE) vulnerability via crafted extension publisher-url/additional-urls could be abused by a malicious extension in Docker Desktop before 4.34.2.

EPSS

Процентиль: 86%
0.03113
Низкий

8.9 High

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-79