Bug#1013279: cookiecutter: CVE-2022-24065

2023-03-17 Thread Moritz Mühlenhoff
Am Mon, Jun 20, 2022 at 04:59:39PM +0200 schrieb Moritz Mühlenhoff: > Source: cookiecutter > X-Debbugs-CC: t...@security.debian.org > Severity: important > Tags: security > > Hi, > > The following vulnerability was published for cookiecutter. > > CVE-2022-24065[0]: > | The package cookiecutter

Bug#1013279: cookiecutter: CVE-2022-24065

2022-06-20 Thread Moritz Mühlenhoff
Source: cookiecutter X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for cookiecutter. CVE-2022-24065[0]: | The package cookiecutter before 2.1.1 are vulnerable to Command | Injection via hg argument injection. When calling