CVE-2024-6257 affecting package terraform for versions less than 1.3.2-17
Details
HashiCorp’s go-getter library can be coerced into executing Git update on an existing maliciously modified Git Configuration, potentially leading to arbitrary code execution.