Ecosyste.ms advisories
An open API service providing security vulnerability metadata for many open source software ecosystems.
An open API service providing security vulnerability metadata for many open source software ecosystems.
Command Injection in samsung-remote
Versions of samsung-remote
before 1.3.5 are vulnerable to command injection. This vulnerability is exploitable if user input is passed into the ip
option of the package constructor.
Update to version 1.3.5 or later.
Permalink: https://github.com/advisories/GHSA-xhjx-mfr6-9rr4