Loading HuntDB...

GHSA-7mp2-f3vh-j4w4

GitHub Security Advisory

⚠ Unreviewed CRITICAL Has CVE

Advisory Details

The previous version of Puppet Enterprise 2018.1 is vulnerable to unsafe code execution when upgrading pe-razor-server. Affected releases are Puppet Enterprise: 2018.1.x versions prior to 2018.1.1 and razor-server and pe-razor-server prior to 1.9.0.0.

Related CVEs

Key Information

GHSA ID
GHSA-7mp2-f3vh-j4w4
Published
May 14, 2022 3:11 AM
Last Modified
May 14, 2022 3:11 AM
CVSS Score
9.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 16, 2025 6:29 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.