Headline
GHSA-g5qr-xgg7-8q2w: Command Injection in puppet-facter
All versions of the package puppet-facter are vulnerable to Command Injection via the getFact function due to improper input sanitization.
Command Injection in puppet-facter
Moderate severity GitHub Reviewed Published Jan 26, 2023 to the GitHub Advisory Database • Updated Jan 27, 2023
Related news
CVE-2022-25350
All versions of the package puppet-facter are vulnerable to Command Injection via the getFact function due to improper input sanitization.