CVE-2025-23211 - Tandoor Recipes Jinja2 SSTI Remote Command Execution

1 day ago 2
ARTICLE AD BOX
CVE ID : CVE-2025-23211
Published : Jan. 28, 2025, 4:15 p.m. | 18 minutes ago
Description : Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists. A Jinja2 SSTI vulnerability allows any user to execute commands on the server. In the case of the provided Docker Compose file as root. This vulnerability is fixed in 1.5.24.
Severity: 9.9 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Read Entire Article