Loading HuntDB...

GHSA-8vv5-qvx6-mqw7

GitHub Security Advisory

⚠ Unreviewed CRITICAL Has CVE

Advisory Details

Improper neutralization of special elements used in a command ('Command Injection') vulnerability in Task Manager component in Synology BeePhotos before 1.0.2-10026 and 1.1.0-10053 and Synology Photos before 1.6.2-0720 and 1.7.0-0795 allows remote attackers to execute arbitrary code via unspecified vectors.

Related CVEs

Key Information

GHSA ID
GHSA-8vv5-qvx6-mqw7
Published
November 15, 2024 12:31 PM
Last Modified
November 15, 2024 12:31 PM
CVSS Score
9.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 15, 2025 6:32 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.