CVE-2025-31693

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Drupal AI (Artificial Intelligence) allows OS Command Injection.This issue affects AI (Artificial Intelligence): from 0.0.0 before 1.0.5.
References
Link Resource
https://www.drupal.org/sa-contrib-2025-022 Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:drupal:artificial_intelligence:*:*:*:*:*:drupal:*:*

History

15 Apr 2025, 14:58

Type Values Removed Values Added
First Time Drupal artificial Intelligence
Drupal
CPE cpe:2.3:a:drupal:artificial_intelligence:*:*:*:*:*:drupal:*:*
References () https://www.drupal.org/sa-contrib-2025-022 - () https://www.drupal.org/sa-contrib-2025-022 - Vendor Advisory

03 Apr 2025, 18:15

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de neutralización incorrecta de elementos especiales utilizados en un comando del sistema operativo ('Inyección de comando del sistema operativo') en Drupal AI (Artificial Intelligence) permite la inyección de comandos del sistema operativo. Este problema afecta a AI (Inteligencia Artificial): desde 0.0.0 antes de 1.0.5.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.6

31 Mar 2025, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-31 22:15

Updated : 2025-04-15 14:58


NVD link : CVE-2025-31693

Mitre link : CVE-2025-31693

CVE.ORG link : CVE-2025-31693


JSON object : View

Products Affected

drupal

  • artificial_intelligence
CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')