Vulnerabilities (CVE)

Filtered by vendor Fishshell Subscribe
Filtered by product Fish
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-2914 1 Fishshell 1 Fish 2020-02-04 7.5 HIGH 9.8 CRITICAL
fish (aka fish-shell) 2.0.0 before 2.1.1 does not restrict access to the configuration service (aka fish_config), which allows remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by set_prompt.