CVE-2021-3013

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
11/06/2021
Last modified:
20/09/2021

Description

ripgrep before 13 on Windows allows attackers to trigger execution of arbitrary programs from the current working directory via the -z/--search-zip or --pre flag.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ripgrep_project:ripgrep:*:*:*:*:*:*:*:* 13.0.0 (excluding)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*