borgmatic@1.7.13 vulnerabilities

Simple, configuration-driven backup software for servers and workstations

  • latest version

    1.9.5

  • latest non vulnerable version

  • first published

    8 years ago

  • latest version published

    2 days ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the borgmatic package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • H
    Command Injection

    borgmatic is a Simple, configuration-driven backup software for servers and workstations

    Affected versions of this package are vulnerable to Command Injection via the MongoDB hook.

    How to fix Command Injection?

    Upgrade borgmatic to version 1.8.7 or higher.

    [,1.8.7)
    • H
    Command Injection

    borgmatic is a Simple, configuration-driven backup software for servers and workstations

    Affected versions of this package are vulnerable to Command Injection via the PostgreSQL hook.

    How to fix Command Injection?

    Upgrade borgmatic to version 1.8.7 or higher.

    [,1.8.7)
    • H
    Command Injection

    borgmatic is a Simple, configuration-driven backup software for servers and workstations

    Affected versions of this package are vulnerable to Command Injection within the borg action.

    How to fix Command Injection?

    Upgrade borgmatic to version 1.8.7 or higher.

    [,1.8.7)
    • H
    Command Injection

    borgmatic is a Simple, configuration-driven backup software for servers and workstations

    Affected versions of this package are vulnerable to Command Injection via the SQLite hook.

    How to fix Command Injection?

    Upgrade borgmatic to version 1.8.7 or higher.

    [,1.8.7)
    • H
    Command Injection

    borgmatic is a Simple, configuration-driven backup software for servers and workstations

    Affected versions of this package are vulnerable to Command Injection via command hook variable/constant interpolation.

    How to fix Command Injection?

    Upgrade borgmatic to version 1.8.7 or higher.

    [,1.8.7)