sharkdp BAT before 0.18.2 executes less.exe from the current working directory.
References
Link | Resource |
---|---|
https://github.com/sharkdp/bat/pull/1724 | Patch Third Party Advisory |
https://vuln.ryotak.me/advisories/53 | Third Party Advisory |
https://github.com/sharkdp/bat/commit/bf2b2df9c9e218e35e5a38ce3d03cffb7c363956 | Patch Third Party Advisory |
https://github.com/sharkdp/bat/releases/tag/v0.18.2 | Release Notes Third Party Advisory |
Configurations
Information
Published : 2021-07-15 13:15
Updated : 2021-08-17 08:35
NVD link : CVE-2021-36753
Mitre link : CVE-2021-36753
JSON object : View
CWE
CWE-427
Uncontrolled Search Path Element
Products Affected
bat_project
- bat