Advisory #53
Title | bat arbitrary programs execution from current directory |
CVE ID | CVE-2021-36753 |
Vendor | bat maintainers |
Affected product | bat |
Affected versions | =< v0.18.1 |
Vulnerability type | CWE-427 (Uncontrolled Search Path Element) |
Description | bat before v0.18.1 allows attackers to trigger execution of arbitrary programs from the current working directory. |
Status | Fixed in v0.18.2 |
Recommendation | Update to v0.18.2 or above. |