Loading HuntDB...

GHSA-mqrm-h2pw-9j9r

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

Applications that use Wget to access a remote resource using shorthand URLs and pass arbitrary user credentials in the URL are vulnerable. In these cases attackers can enter crafted credentials which will cause Wget to access an arbitrary host.

Related CVEs

Key Information

GHSA ID
GHSA-mqrm-h2pw-9j9r
Published
November 19, 2024 3:31 PM
Last Modified
March 21, 2025 6:31 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: August 9, 2025 6:30 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.