"Windows Systems at Risk: Critical Rust Vulnerability Enables Command Injection Attacks"

TL;DR
A critical security vulnerability in the Rust standard library, tracked as CVE-2024-24576, allows threat actors to execute command injection attacks on Windows systems. The flaw, rated as critical by GitHub, enables unauthenticated remote exploitation and affects all Rust versions before 1.77.2 on Windows. The Rust security team addressed the issue by improving the robustness of the escaping code and modifying the Command API. The vulnerability, dubbed BatBadBut, also impacts other programming languages, with some having released patches or documentation updates. The White House has urged the adoption of memory-safe programming languages like Rust to enhance software security.
Want the full story? Read the original reporting
Read on BleepingComputer