Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

ubuntu логотип

CVE-2020-7677

около 4 лет назад

This affects the package thenify before 3.3.1. The name argument provided to the package can be controlled by users without any sanitization, and this is provided to the eval function without any sanitization.

CVSS3: 8.6
EPSS: Низкий
redhat логотип

CVE-2020-7677

около 4 лет назад

This affects the package thenify before 3.3.1. The name argument provided to the package can be controlled by users without any sanitization, and this is provided to the eval function without any sanitization.

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2020-7677

около 4 лет назад

This affects the package thenify before 3.3.1. The name argument provided to the package can be controlled by users without any sanitization, and this is provided to the eval function without any sanitization.

CVSS3: 8.6
EPSS: Низкий
debian логотип

CVE-2020-7677

около 4 лет назад

This affects the package thenify before 3.3.1. The name argument provi ...

CVSS3: 8.6
EPSS: Низкий
github логотип

GHSA-29xr-v42j-r956

около 4 лет назад

thenify before 3.3.1 made use of unsafe calls to `eval`.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2020-7677

This affects the package thenify before 3.3.1. The name argument provided to the package can be controlled by users without any sanitization, and this is provided to the eval function without any sanitization.

CVSS3: 8.6
2%
Низкий
около 4 лет назад
redhat логотип
CVE-2020-7677

This affects the package thenify before 3.3.1. The name argument provided to the package can be controlled by users without any sanitization, and this is provided to the eval function without any sanitization.

CVSS3: 9.8
2%
Низкий
около 4 лет назад
nvd логотип
CVE-2020-7677

This affects the package thenify before 3.3.1. The name argument provided to the package can be controlled by users without any sanitization, and this is provided to the eval function without any sanitization.

CVSS3: 8.6
2%
Низкий
около 4 лет назад
debian логотип
CVE-2020-7677

This affects the package thenify before 3.3.1. The name argument provi ...

CVSS3: 8.6
2%
Низкий
около 4 лет назад
github логотип
GHSA-29xr-v42j-r956

thenify before 3.3.1 made use of unsafe calls to `eval`.

CVSS3: 9.8
2%
Низкий
около 4 лет назад

Уязвимостей на страницу