Описание
Command Injection in ungit
Versions of ungit prior to 0.9.0 are affected by a command injection vulnerability in the url parameter.
Recommendation
Update version 0.9.0 or later.
Пакеты
Наименование
ungit
npm
Затронутые версииВерсия исправления
<= 0.8.4
0.9.0
CVE ID
Дефекты
CWE-77
CVE ID
Дефекты
CWE-77