Critical severity9.8NVD Advisory· Published Jun 2, 2022· Updated Jun 17, 2026
CVE-2021-34079
CVE-2021-34079
Description
OS Command injection vulnerability in Mintzo Docker-Tester through 1.2.1 allows attackers to execute arbitrary commands via shell metacharacters in the 'ports' entry of a crafted docker-compose.yml file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
docker-testernpm | <= 1.2.1 | — |
Affected products
3- cpe:2.3:a:docker-tester_project:docker-tester:*:*:*:*:*:node.js:*:*Range: <=1.2.1
- Mintzo/Docker-Testerdescription
Patches
Vulnerability mechanics
References
4- advisory.checkmarx.net/advisory/CX-2021-4786nvdExploitThird Party AdvisoryWEB
- github.com/advisories/GHSA-rj88-4777-828hghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2021-34079ghsaADVISORY
- www.npmjs.com/package/docker-testernvdProductThird Party AdvisoryWEB
News mentions
0No linked articles in our index yet.