Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-fr75-x856-q6j8: Octobot before 0.4.4 mishandles Tentacles upload

WebInterface in OctoBot before 0.4.4 allows remote code execution because Tentacles upload is mishandled.

ghsa
#web#git#rce

Octobot before 0.4.4 mishandles Tentacles upload

High severity GitHub Reviewed Published Jul 17, 2022 • Updated Jul 20, 2022

Related news

OctoBot WebInterface 0.4.3 Remote Code Execution

OctoBot WebInterface version 0.4.3 suffers from a remote code execution vulnerability.

CVE-2021-36711: Sashimi Evil OctoBot Tentacle ≈ Packet Storm

WebInterface in OctoBot before 0.4.4 allows remote code execution because Tentacles upload is mishandled.