CVE-2022-40274

CVE-2022-40274

Gridea version 0.9.3 allows an external attacker to execute arbitrary code remotely on any client attempting to view a malicious markdown file through Gridea. This is possible because the application has the ‘nodeIntegration’ option enabled.

Source: CVE-2022-40274

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다