Product
Unix-like Artifacts Collector (UAC) versions prior to 3.3.0 are vulnerable to command injection via the _command_collector function, allowing arbitrary command execution through malicious filenames or artifact definitions.