CVE-2021-42139: Code Injection
Published Oct 11, 2021
·Updated
Deno Standard Modules before 0.107.0 allows Code Injection via an untrusted YAML file in certain configurations.
Affected Software
1 affected component
Deno Deno Standard Modules<0.107.0
Event History
Oct 11, 2021
CVE Published
via MITRE·04:14 AM
Data Sourced
via MITRE·04:14 AM
Description
Data Sourced
via NVD·05:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2021-42139?
CVE-2021-42139 refers to a vulnerability in Deno Standard Modules before version 0.107.0 that allows code injection via an untrusted YAML file in certain configurations.
2
What is the severity of CVE-2021-42139?
The severity of CVE-2021-42139 is critical with a severity score of 9.8.
3
How can this vulnerability be exploited?
This vulnerability can be exploited by injecting malicious code through an untrusted YAML file in specific configurations.
4
Which software versions are affected by CVE-2021-42139?
Deno Standard Modules up to version 0.107.0 are affected by CVE-2021-42139.
5
How can CVE-2021-42139 be fixed?
The vulnerability can be fixed by updating Deno Standard Modules to version 0.107.0 or above.