DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2022-23915. Reason: This candidate is a reservation duplicate of CVE-2022-23915. Notes: All CVE users should reference CVE-2022-23915 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-0360 | The package weblate from 0 and before 4.11.1 are vulnerable to Remote Code Execution (RCE) via argument injection when using git or mercurial repositories. Authenticated users, can change the behavior of the application in an unintended way, leading to command execution.\n |
Github GHSA |
GHSA-h2g5-2rhx-ffgj | Command injection in Weblate |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
No reference.
History
No history.
Projects
Sign in to view the affected projects.
Status: REJECTED
Assigner: GitHub_M
Published:
Updated: 2022-03-14T14:52:24
Reserved: 2022-02-10T00:00:00
Link: CVE-2022-24727
No data.
Status : Rejected
Published: 2022-03-04T17:15:07.950
Modified: 2023-11-07T03:44:34.700
Link: CVE-2022-24727
No data.
OpenCVE Enrichment
No data.
Weaknesses
No weakness.
EUVD
Github GHSA