ZeroHour

CVE-2022-24300

CVSS 3.1
9.8 critical
EPSS
2%p75
Published
()
Modified
Description

Minetest before 5.4.0 allows attackers to add or modify arbitrary meta fields of the same item stack as saved user input, aka ItemStack meta injection.

Vendors
minetestdebian
Products
minetest, debian linux
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.