Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
GitHub's CodeQL found critical RCE in German Covid app server (github.com/corona-warn-app)
1 point by cyptus on Nov 19, 2020 | hide | past | favorite | 1 comment


blog post (german): https://www.coronawarn.app/de/blog/2020-11-19-security-updat...

the template engine allowed remote code injected throug a country name into the error message




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: