Description
A code injection in cryo 0.0.6 allows an attacker to arbitrarily execute code due to insecure implementation of deserialization.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-0359 | A code injection in cryo 0.0.6 allows an attacker to arbitrarily execute code due to insecure implementation of deserialization. |
Github GHSA |
GHSA-38f5-ghc2-fcmv | Code Injection in cryo |
References
| Link | Providers |
|---|---|
| https://hackerone.com/reports/350418 |
|
History
No history.
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2024-08-05T04:50:30.738Z
Reserved: 2017-12-28T00:00:00.000Z
Link: CVE-2018-3784
No data.
Status : Modified
Published: 2018-08-17T13:29:00.407
Modified: 2024-11-21T04:06:04.140
Link: CVE-2018-3784
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA