OSV 1.4.0 · github-reviewed · 修改于 2021-01-08 06:40
发布时间
2020-11-28 00:07
GitHub 审查时间
2020-11-27 23:56
NVD 发布时间
—
源文件
advisories/github-reviewed/2020/11/GHSA-4v2w-h9jm-mqjg/GHSA-4v2w-h9jm-mqjg.json
command injection vulnerability by prototype pollution
Problem was fixed with a rewrite of shell sanitations to avoid prototyper pollution problems. Please upgrade to version >= 4.30.2
If you cannot upgrade, be sure to check or sanitize service parameter strings that are passed to si.inetChecksite()
If you have any questions or comments about this advisory: