Impact
Despite the fix for GHSA-vm56-hh5p-448v, cmder can still emit control characters to the title which can execute commands.
Patches
Cmder will use an updated version of ConEmu that is patched.
Workarounds
Ideally you should upgrade but you can change ConEmu in the vendor/sources.json file to the latest version and run the scripts/build.ps1 file. That should download and unpack the latest version.
References
https://github.com/orgs/cmderdev/discussions/2864
Maximus5/ConEmu#2536
Impact
Despite the fix for GHSA-vm56-hh5p-448v, cmder can still emit control characters to the title which can execute commands.
Patches
Cmder will use an updated version of ConEmu that is patched.
Workarounds
Ideally you should upgrade but you can change ConEmu in the vendor/sources.json file to the latest version and run the scripts/build.ps1 file. That should download and unpack the latest version.
References
https://github.com/orgs/cmderdev/discussions/2864
Maximus5/ConEmu#2536