Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-26183

Опубликовано: 21 мар. 2022
Источник: debian

Описание

PNPM v6.15.1 and below was discovered to contain an untrusted search path which causes the application to behave in unexpected ways when users execute PNPM commands in a directory containing malicious content. This vulnerability occurs when the application is ran on Windows OS.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
pnpmitppackage

Связанные уязвимости

CVSS3: 8.8
nvd
почти 4 года назад

PNPM v6.15.1 and below was discovered to contain an untrusted search path which causes the application to behave in unexpected ways when users execute PNPM commands in a directory containing malicious content. This vulnerability occurs when the application is ran on Windows OS.

CVSS3: 8.8
github
почти 4 года назад

Untrusted Search Path in PNPM