CVE-2022-26205

Marky commit 3686565726c65756e was discovered to contain a remote code execution (RCE) vulnerability via the Display text fields. This vulnerability allows attackers to execute arbitrary code via injection of a crafted payload.
Configurations

Configuration 1 (hide)

cpe:2.3:a:marky_project:marky:-:*:*:*:*:*:*:*

History

21 Nov 2024, 06:53

Type Values Removed Values Added
References () https://github.com/V1ntLyn/marky_3686565726c65756e - Broken Link () https://github.com/V1ntLyn/marky_3686565726c65756e - Broken Link

08 Aug 2023, 14:21

Type Values Removed Values Added
CWE CWE-94 CWE-74

31 Mar 2022, 16:27

Type Values Removed Values Added
CWE CWE-94
References (MISC) https://github.com/V1ntLyn/marky_3686565726c65756e - (MISC) https://github.com/V1ntLyn/marky_3686565726c65756e - Broken Link
CPE cpe:2.3:a:marky_project:marky:-:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 7.5
v3 : 9.8

27 Mar 2022, 01:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-03-27 01:15

Updated : 2024-11-21 06:53


NVD link : CVE-2022-26205

Mitre link : CVE-2022-26205

CVE.ORG link : CVE-2022-26205


JSON object : View

Products Affected

marky_project

  • marky
CWE
CWE-74

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')