{"cvss":0.0,"datePublished":"2021-11-17","dateUpdated":"2021-11-17","description":"Improper neutralization of user data in the DjVu file format in Exiftool versions 7.44 and up allows arbitrary code execution when parsing the malicious image","dueDate":"2021-12-01","id":"CVE-2021-22204","kev_catalogs":["cisa"],"knownRansomwareCampaignUse":"Unknown","notes":"https://nvd.nist.gov/vuln/detail/CVE-2021-22204","product":"Exiftool","requiredAction":"Apply updates per vendor instructions.","severity":"HIGH","source":"cisa_known_exploited","title":"ExifTool Remote Code Execution Vulnerability","vendor":"Perl"}