Описание
p4 vulnerable to Command Injection due to improper input sanitization
The package p4 before 0.0.7 is vulnerable to Command Injection via the run() function due to improper input sanitization
Пакеты
Наименование
p4
npm
Затронутые версииВерсия исправления
< 0.0.7
0.0.7
Связанные уязвимости
CVSS3: 7.4
nvd
около 3 лет назад
The package p4 before 0.0.7 are vulnerable to Command Injection via the run() function due to improper input sanitization