Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-35926

Опубликовано: 22 июн. 2023
Источник: nvd
CVSS3: 8
CVSS3: 9.9
EPSS Низкий

Описание

Backstage is an open platform for building developer portals. The Backstage scaffolder-backend plugin uses a templating library that requires sandbox, as it by design allows for code injection. The library used for this sandbox so far has been vm2, but in light of several past vulnerabilities and existing vulnerabilities that may not have a fix, the plugin has switched to using a different sandbox library. A malicious actor with write access to a registered scaffolder template could manipulate the template in a way that allows for remote code execution on the scaffolder-backend instance. This was only exploitable in the template YAML definition itself and not by user input data. This is vulnerability is fixed in version 1.15.0 of @backstage/plugin-scaffolder-backend.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:linuxfoundation:backstage:*:*:*:*:*:*:*:*
Версия до 1.15.0 (исключая)

EPSS

Процентиль: 85%
0.0242
Низкий

8 High

CVSS3

9.9 Critical

CVSS3

Дефекты

CWE-94
CWE-94

Связанные уязвимости

CVSS3: 8
github
больше 2 лет назад

Backstage Scaffolder plugin has insecure sandbox

EPSS

Процентиль: 85%
0.0242
Низкий

8 High

CVSS3

9.9 Critical

CVSS3

Дефекты

CWE-94
CWE-94