Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Drupal AI (Artificial Intelligence) allows OS Command Injection.This issue affects AI (Artificial Intelligence): from 0.0.0 before 1.0.5.
References
History

Tue, 15 Apr 2025 15:15:00 +0000

Type Values Removed Values Added
First Time appeared Drupal
Drupal artificial Intelligence
CPEs cpe:2.3:a:drupal:artificial_intelligence:*:*:*:*:*:drupal:*:*
Vendors & Products Drupal
Drupal artificial Intelligence

Thu, 03 Apr 2025 18:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 6.6, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 31 Mar 2025 22:00:00 +0000

Type Values Removed Values Added
Description Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Drupal AI (Artificial Intelligence) allows OS Command Injection.This issue affects AI (Artificial Intelligence): from 0.0.0 before 1.0.5.
Title AI (Artificial Intelligence) - Moderately critical - Gadget Chain - SA-CONTRIB-2025-022
Weaknesses CWE-78
References

cve-icon MITRE

Status: PUBLISHED

Assigner: drupal

Published:

Updated: 2025-04-03T17:24:33.215Z

Reserved: 2025-03-31T21:30:25.064Z

Link: CVE-2025-31693

cve-icon Vulnrichment

Updated: 2025-04-03T17:24:27.501Z

cve-icon NVD

Status : Analyzed

Published: 2025-03-31T22:15:21.983

Modified: 2025-04-15T14:58:25.040

Link: CVE-2025-31693

cve-icon Redhat

No data.