← Back to CVE List
CVE-2021-23412
All versions of package gitlogplus are vulnerable to Command Injection via the main functionality, as options attributes are appended to the command to be executed without sanitization.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt