A security issue has been found in terraform-provider-windns before version 1.0.5. The windns_record resource did not santize the input variables. This can lead to authenticated command injection in the underlyding powershell command prompt.
<code>83ef736 (fix: better input validation)</code>
v1.0.5{
"severity": "LOW",
"nvd_published_at": "2025-05-06T17:16:12Z",
"github_reviewed": true,
"cwe_ids": [
"CWE-77"
],
"github_reviewed_at": "2025-05-06T16:38:44Z"
}