Skip to content

Commit 900466e

Browse files
1 parent 3e95cbe commit 900466e

1 file changed

Lines changed: 4 additions & 3 deletions

File tree

advisories/github-reviewed/2022/03/GHSA-h2g5-2rhx-ffgj/GHSA-h2g5-2rhx-ffgj.json

Lines changed: 4 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1,13 +1,14 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-h2g5-2rhx-ffgj",
4-
"modified": "2022-03-14T23:12:25Z",
4+
"modified": "2026-01-23T22:29:40Z",
55
"published": "2022-03-05T00:00:44Z",
6+
"withdrawn": "2026-01-23T22:29:40Z",
67
"aliases": [
78
"CVE-2022-24727"
89
],
9-
"summary": "Command injection in Weblate",
10-
"details": "Weblate is a web based localization tool with tight version control integration. Prior to version 4.11.1, Weblate didn't properly sanitize some arguments passed to Git and Mercurial, allowing them to change their behavior in an unintended way. Instances where untrusted users cannot create new components are not affected. The issues were fixed in the 4.11.1 release.",
10+
"summary": "Duplicate Advisory: Command injection in Weblate",
11+
"details": "## Duplicate Advisory\nThis advisory has been withdrawn because it is a duplicate of GHSA-3872-f48p-pxqj. This link is maintained to preserve external references.\n\n## Original Description\nWeblate is a web based localization tool with tight version control integration. Prior to version 4.11.1, Weblate didn't properly sanitize some arguments passed to Git and Mercurial, allowing them to change their behavior in an unintended way. Instances where untrusted users cannot create new components are not affected. The issues were fixed in the 4.11.1 release.",
1112
"severity": [],
1213
"affected": [
1314
{

0 commit comments

Comments
 (0)