NVD Vulnerability Detail
Search Exploit, PoC
CVE-2024-41997
Summary

An issue was discovered in version of Warp Terminal prior to 2024.07.18 (v0.2024.07.16.08.02). A command injection vulnerability exists in the Docker integration functionality. An attacker can create a specially crafted hyperlink using the `warp://action/docker/open_subshell` intent that when clicked by the victim results in command execution on the victim's machine.

Publication Date Oct. 15, 2024, 1:15 a.m.
Registration Date Oct. 15, 2024, 5 a.m.
Last Update Oct. 17, 2024, 5:35 a.m.
Related information, measures and tools
Common Vulnerabilities List