CVE-2022-42906HIGHCVSS 7.8fixed in powerline-gitstatus 1.3.2-1 (bookworm)2022
CVE-2022-42906 [HIGH] CVE-2022-42906: powerline-gitstatus - powerline-gitstatus (aka Powerline Gitstatus) before 1.3.2 allows arbitrary code...
powerline-gitstatus (aka Powerline Gitstatus) before 1.3.2 allows arbitrary code execution. git repositories can contain per-repository configuration that changes the behavior of git, including running arbitrary commands. When using powerline-gitstatus, changing to a directory automatically runs git commands in order to display information about the curr
debian