Potential Command Injection in printer
Critical severity
GitHub Reviewed
Published
Nov 28, 2017
to the GitHub Advisory Database
•
Updated Jan 9, 2023
Description
Published to the GitHub Advisory Database
Nov 28, 2017
Reviewed
Jun 16, 2020
Last updated
Jan 9, 2023
Versions 0.0.1 and earlier of
printer
are affected by a command injection vulnerability resulting from a failure to sanitize command arguments properly in theprintDirect()
function.Recommendation
Update to version 0.0.2 or later.
References