Vulnerabilities (CVE)

Filtered by vendor Facebook Subscribe
Filtered by product Meta Spark Studio
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-23347 1 Facebook 1 Meta Spark Studio 2024-02-28 N/A 7.8 HIGH
Prior to v176, when opening a new project Meta Spark Studio would execute scripts defined inside of a package.json file included as part of that project. Those scripts would have the ability to execute arbitrary code on the system as the application.