CVE-2022-29599
Command injection in Apache Maven maven-shared-utils
Description
In Apache Maven maven-shared-utils prior to version 3.3.3, the Commandline class can emit double-quoted strings without proper escaping, allowing shell injection attacks.
Base CVSS
9.8
EPSS Score
0.34%
Introduced Version
0.1
Fix Available
3.3.3
Available Patches
Package
CVEs Fixed
Lines of Code Changed