DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2022-23915. Reason: This candidate is a reservation duplicate of CVE-2022-23915. Notes: All CVE users should reference CVE-2022-23915 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage
Advisories
Source ID Title
EUVD EUVD EUVD-2022-0360 The package weblate from 0 and before 4.11.1 are vulnerable to Remote Code Execution (RCE) via argument injection when using git or mercurial repositories. Authenticated users, can change the behavior of the application in an unintended way, leading to command execution.\n
Github GHSA Github GHSA GHSA-h2g5-2rhx-ffgj Command injection in Weblate
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

References

No reference.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: REJECTED

Assigner: GitHub_M

Published:

Updated: 2022-03-14T14:52:24

Reserved: 2022-02-10T00:00:00

Link: CVE-2022-24727

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Rejected

Published: 2022-03-04T17:15:07.950

Modified: 2023-11-07T03:44:34.700

Link: CVE-2022-24727

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses

No weakness.