Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-g5qr-xgg7-8q2w: Command Injection in puppet-facter

All versions of the package puppet-facter are vulnerable to Command Injection via the getFact function due to improper input sanitization.

ghsa
#git

Command Injection in puppet-facter

Moderate severity GitHub Reviewed Published Jan 26, 2023 to the GitHub Advisory Database • Updated Jan 27, 2023

Related news

CVE-2022-25350

All versions of the package puppet-facter are vulnerable to Command Injection via the getFact function due to improper input sanitization.