Vulnerability CVE-2022-3133


Published: 2022-09-09

Description:
OS Command Injection in GitHub repository jgraph/drawio prior to 20.3.0.

Type:

CWE-78

(Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') )

 References:
https://github.com/jgraph/drawio/commit/8f3f95a05b701175b639ba9572dc4e0fb7c46b02
https://huntr.dev/bounties/2d93052f-efc6-4647-9a6d-8b08dc251223

Copyright 2026, cxsecurity.com

 

Back to Top