Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-58266

Опубликовано: 27 июл. 2025
Источник: nvd
CVSS3: 3.2
CVSS3: 9.8
EPSS Низкий

Описание

The shlex crate before 1.2.1 for Rust allows unquoted and unescaped instances of the { and \xa0 characters, which may facilitate command injection.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:comex:shlex:*:*:*:*:*:rust:*:*
Версия до 1.2.1 (исключая)

EPSS

Процентиль: 52%
0.0078
Низкий

3.2 Low

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-116

Связанные уязвимости

CVSS3: 3.2
ubuntu
около 1 года назад

The shlex crate before 1.2.1 for Rust allows unquoted and unescaped instances of the { and \xa0 characters, which may facilitate command injection.

CVSS3: 3.2
redhat
около 1 года назад

The shlex crate before 1.2.1 for Rust allows unquoted and unescaped instances of the { and \xa0 characters, which may facilitate command injection.

CVSS3: 3.2
msrc
12 месяцев назад

The shlex crate before 1.2.1 for Rust allows unquoted and unescaped instances of the { and \xa0 characters, which may facilitate command injection.

CVSS3: 3.2
debian
около 1 года назад

The shlex crate before 1.2.1 for Rust allows unquoted and unescaped in ...

suse-cvrf
12 месяцев назад

Security update for rav1e

EPSS

Процентиль: 52%
0.0078
Низкий

3.2 Low

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-116