CVE-2024-7093
概要

Dispatch's notification service uses Jinja templates to generate messages to users. Jinja permits code execution within blocks, which were neither properly sanitized nor sandboxed. This vulnerability enables users to construct command line scripts in their custom message templates, which are then executed whenever these notifications are rendered and sent out.

公表日 2024年8月2日6:16
登録日 2024年8月2日10:00
最終更新日 2024年8月2日21:59
関連情報、対策とツール
共通脆弱性一覧