Filtered by vendor Apache Subscriptions
Filtered by product Maven Shared Utils Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-29599 2 Apache, Debian 2 Maven Shared Utils, Debian Linux 2023-09-28 9.8 Critical
In Apache Maven maven-shared-utils prior to version 3.3.3, the Commandline class can emit double-quoted strings without proper escaping, allowing shell injection attacks.