| Summary | An issue was discovered in version of Warp Terminal prior to 2024.07.18 (v0.2024.07.16.08.02). A command injection vulnerability exists in the Docker integration functionality. An attacker can create a specially crafted hyperlink using the `warp://action/docker/open_subshell` intent that when clicked by the victim results in command execution on the victim's machine. |
|---|---|
| Publication Date | Oct. 15, 2024, 1:15 a.m. |
| Registration Date | Oct. 15, 2024, 5 a.m. |
| Last Update | Oct. 17, 2024, 5:35 a.m. |