yokawasa/fluent-plugin-azure-loganalytics

Fix: CVE-2020-8130 Moderate severity

Closed this issue · 0 comments

moderate severity
Vulnerable versions: <= 12.3.2
Patched version: 12.3.3
here is an OS command injection vulnerability in Ruby Rake before 12.3.3 in Rake::FileList when supplying a filename that begins with the pipe character |.