GHSA-75w7-cqxv-p63rHighCVSS 8.2
Animate is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability...
🔗 CVE IDs covered (1)
📋 Description
Animate is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability that could result in arbitrary code execution in the context of the current user. A low-privileged attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.