Total vulnerabilities in the database
Mahara 21.04 before 21.04.7, 21.10 before 21.10.5, 22.04 before 22.04.3, and 22.10 before 22.10.0 potentially allow a PDF export to trigger a remote shell if the site is running on Ubuntu and the flag -dSAFER is not set with Ghostscript.
Software | From | Fixed in |
---|---|---|
mahara / mahara | 21.04.0 | 21.04.7 |
mahara / mahara | 21.10.0 | 21.10.5 |
mahara / mahara | 22.04.0 | 22.04.3 |
mahara / mahara | 22.10.0-rc1 | 22.10.0-rc1.x |