An authenticated user can execute arbitrary command, see more in https://github.com/Gerapy/Gerapy/issues/211.
Fixed in 0.9.9
{ "github_reviewed": true, "nvd_published_at": "2022-01-26T22:15:00Z", "cwe_ids": [ "CWE-77", "CWE-78" ], "github_reviewed_at": "2022-01-06T23:30:47Z", "severity": "HIGH" }