CVE-2024-25255

Sublime Text 4 was discovered to contain a command injection vulnerability via the New Build System module. NOTE: multiple third parties report that this is intended behavior.
Configurations

No configuration.

History

24 Dec 2024, 06:15

Type Values Removed Values Added
Summary (en) Sublime Text 4 was discovered to contain a command injection vulnerability via the New Build System module. (en) Sublime Text 4 was discovered to contain a command injection vulnerability via the New Build System module. NOTE: multiple third parties report that this is intended behavior.
References
  • () https://forum.sublimetext.com/t/cve-2024-25255-critical/74906/3 -
  • () https://www.sublimetext.com/docs/build_systems.html#exec-target-options -
  • () https://www.sublimetext.com/docs/build_systems.html#shell_cmd. -

Information

Published : 2024-11-11 23:15

Updated : 2024-12-24 06:15


NVD link : CVE-2024-25255

Mitre link : CVE-2024-25255

CVE.ORG link : CVE-2024-25255


JSON object : View

Products Affected

No product.

CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')