Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Drupal AI (Artificial Intelligence) allows OS Command Injection.This issue affects AI (Artificial Intelligence): from 0.0.0 before 1.0.5.
References
History

Thu, 03 Apr 2025 18:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 31 Mar 2025 22:00:00 +0000

Type Values Removed Values Added
Description Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Drupal AI (Artificial Intelligence) allows OS Command Injection.This issue affects AI (Artificial Intelligence): from 0.0.0 before 1.0.5.
Title AI (Artificial Intelligence) - Critical - Remote Code Execution - SA-CONTRIB-2025-021
Weaknesses CWE-78
References

cve-icon MITRE

Status: PUBLISHED

Assigner: drupal

Published:

Updated: 2025-04-03T17:23:24.605Z

Reserved: 2025-03-31T21:30:15.360Z

Link: CVE-2025-31692

cve-icon Vulnrichment

Updated: 2025-04-03T17:23:17.991Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-03-31T22:15:21.873

Modified: 2025-04-03T18:15:47.570

Link: CVE-2025-31692

cve-icon Redhat

No data.