VYPR

Gitlogplus

by Gitlogplus Project

CVEs (1)

  • CVE-2021-23412HigJul 23, 2021
    risk 0.53cvss 8.1epss 0.04

    All versions of package gitlogplus are vulnerable to Command Injection via the main functionality, as options attributes are appended to the command to be executed without sanitization.