First published: Wed Apr 05 2023(Updated: )
Command Injection in GitHub repository microweber/microweber prior to 1.3.3.
Credit: security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Microweber Microweber | <1.3.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-1877 is a command injection vulnerability found in the GitHub repository microweber/microweber prior to version 1.3.3.
CVE-2023-1877 has a severity rating of critical with a CVSS score of 9.8.
The Microweber Microweber software prior to version 1.3.3 is affected by CVE-2023-1877.
To fix the CVE-2023-1877 vulnerability, update the microweber/microweber repository to version 1.3.3 or later.
You can find more information about CVE-2023-1877 on the GitHub commit [link](https://github.com/microweber/microweber/commit/93a906d0bf096c3ab1674012a90c88d101e76c8d) and on the Huntr.dev bounty [link](https://huntr.dev/bounties/71fe4b3b-20ac-448c-8191-7b99d7ffaf55).