CVE-2021-32849

Severity CVSS v4.0:
Pending analysis
Type:
CWE-77 Command Injection
Publication date:
26/01/2022
Last modified:
02/02/2022

Description

Gerapy is a distributed crawler management framework. Prior to version 0.9.9, an authenticated user could execute arbitrary commands. This issue is fixed in version 0.9.9. There are no known workarounds.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gerapy:gerapy:*:*:*:*:*:*:*:* 0.9.9 (excluding)