Описание
Arbitrary shell command execution in logkitty
Lack of output sanitization allowed an attack to execute arbitrary shell commands via the logkitty npm package before version 0.7.1.
Пакеты
Наименование
logkitty
npm
Затронутые версииВерсия исправления
< 0.7.1
0.7.1
Связанные уязвимости
CVSS3: 9.8
nvd
больше 5 лет назад
Lack of output sanitization allowed an attack to execute arbitrary shell commands via the logkitty npm package before version 0.7.1.