reg-keygen-git-hash-plugin through 0.10.15 allow remote attackers to execute of arbitrary commands.
Upgrade to version 0.10.16 or later.
If you have any questions or comments about this advisory: - Open an issue in reg-viz/reg-suit
{
"github_reviewed": true,
"nvd_published_at": "2021-06-08T17:15:00Z",
"severity": "HIGH",
"github_reviewed_at": "2021-06-08T15:31:31Z",
"cwe_ids": [
"CWE-78",
"CWE-94"
]
}