CRITICAL9.8CVE-2022-3275Command injection is possible in the puppetlabs-apt module prior to version 9.0.0.
from 0
HIGH8.0CVE-2018-6508Puppet Enterprise 2017.3.x prior to 2017.3.3 are vulnerable to a remote execution bug when a specially crafted string was passed into the f…