cvedb.io
CVE-2017-10906
CRITICAL · CVSS 9.8
EPSS exploitation probability: 0%
Published 2017-12-08T15:29:00.260 · Last modified 2026-06-17T01:00:53.877

Summary

Escape sequence injection vulnerability in Fluentd versions 0.12.29 through 0.12.40 may allow an attacker to change the terminal UI or execute arbitrary commands on the device via unspecified vectors.

Affected products

fluentd — fluentd

Does this affect you?

Add your gear to cvedb and we'll alert you only when fluentd ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.