NA

CVE-2024-22682

Published: 30/01/2024 Updated: 05/02/2024
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9

Vulnerability Summary

DuckDB <=0.9.2 and DuckDB extension-template <=0.9.2 are vulnerable to malicious extension injection via the custom extension feature.

Vulnerable Product Search on Vulmon Subscribe to Product

duckdb duckdb