Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-vqgr-mfxm-47f3: git-archive vulnerable to Command Injection via exports function

All versions of package git-archive are vulnerable to Command Injection via the exports function.

ghsa
#git

git-archive vulnerable to Command Injection via exports function

High severity GitHub Reviewed Published Jul 26, 2022 • Updated Aug 6, 2022

Related news

CVE-2020-28422: Snyk Vulnerability Database | Snyk

All versions of package git-archive are vulnerable to Command Injection via the exports function.