Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Altman

#25340of 53,619
9.8Total CVSS
Vulnerabilities · 1
PT-2022-17601
9.8
2022-09-08
Google · Jib-Core · CVE-2022-25914
**Name of the Vulnerable Software and Affected Versions** com.google.cloud.tools:jib-core versions prior to 0.22.0 **Description** The issue allows for Remote Code Execution (RCE) via the `isDockerInstalled` function, due to attempting to execute input. **Recommendations** For versions prior to 0.22.0, update to version 0.22.0 or later to resolve the issue. As a temporary workaround, consider disabling the `isDockerInstalled` function until a patch is available.