CVE-2022-25350

Command Injection in puppet-facter in npm/puppet-facter

Identifiers

CVE-2022-25350, GHSA-g5qr-xgg7-8q2w

Package Slug

npm/puppet-facter

Vulnerability

Command Injection in puppet-facter

Description

All versions of the package puppet-facter is vulnerable to Command Injection via the getFact function due to improper input sanitization.

Affected Versions

All versions

Solution

Unfortunately, there is no solution available yet.

Last Modified

2023-01-27

source