The vulnerability, which carries a perfect 10 base severity score, is tracked as CVE-2024-24576. It affects the Rust standard library, which was found to be improperly escaping arguments when invoking batch files on Windows using the Command API.

  • Daxtron2
    link
    fedilink
    English
    arrow-up
    8
    ·
    3 months ago

    I think it’s because it was first identified in Rust so news media ran with that.