VYPR
Critical severityNVD Advisory· Published Dec 5, 2022· Updated Apr 24, 2025

CVE-2022-42496

CVE-2022-42496

Description

OS command injection vulnerability in Nako3edit, editor component of nadesiko3 (PC Version) v3.3.74 and earlier allows a remote attacker to obtain appkey of the product and execute an arbitrary OS command on the product.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
nadesiko3npm
< 3.3.753.3.75

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

6

News mentions

0

No linked articles in our index yet.