Ops CLI version 2.0.4 (and earlier) is affected by a Deserialization of Untrusted Data vulnerability to achieve arbitrary code execution when the checkout_repo function is called on a maliciously crafted file. An attacker can leverage this to execute arbitrary code on the victim machine.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: adobe

Published: 2021-10-15T14:22:00.184846Z

Updated: 2024-09-16T16:17:57.614Z

Reserved: 2021-09-08T00:00:00

Link: CVE-2021-40720

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-10-15T15:15:08.530

Modified: 2021-10-20T20:36:06.337

Link: CVE-2021-40720

cve-icon Redhat

No data.