The vendor explicitly states that these products are not affected by this CVE.
- All currently supported Red Hat products
- Summary
- A flaw was found in Renovate. This command injection vulnerability exists in the Maven Wrapper manager, allowing a remote attacker to execute arbitrary commands. By specifying a malicious distributionType parameter in maven-wrapper.properties, an attacker can inject shell commands. This leads to remote code execution when Renovate processes Maven Wrapper updates in binarySource=docker mode.
- Remediation
- No remediation text is recorded.
