Vulnerabilities > Firejail Project > Critical

DATE CVE VULNERABILITY TITLE RISK
2020-08-11 CVE-2020-17368 OS Command Injection vulnerability in multiple products
Firejail through 0.9.62 mishandles shell metacharacters during use of the --output or --output-stderr option, which may lead to command injection.
network
low complexity
firejail-project debian fedoraproject opensuse CWE-78
critical
9.8
2017-03-23 CVE-2017-5206 Unspecified vulnerability in Firejail Project Firejail
Firejail before 0.9.44.4, when running on a Linux kernel before 4.8, allows context-dependent attackers to bypass a seccomp-based sandbox protection mechanism via the --allow-debuggers argument.
network
high complexity
firejail-project
critical
9.0