Code Injection in GitHub repository alextselegidis/easyappointments prior to 1.5.0.
References
Link | Resource |
---|---|
https://huntr.dev/bounties/16bc74e2-1825-451f-bff7-bfdc1ea75cc2 | Exploit Issue Tracking Patch Third Party Advisory |
https://github.com/alextselegidis/easyappointments/commit/453c6e130229718680c91bef450db643a0f263e4 | Patch |
Configurations
Information
Published : 2023-03-13 02:15
Updated : 2023-03-17 06:19
NVD link : CVE-2023-1367
Mitre link : CVE-2023-1367
JSON object : View
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
Products Affected
easyappointments
- easyappointments