Логотип exploitDog
bind:CVE-2020-7677
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-7677

Количество 5

Количество 5

ubuntu логотип

CVE-2020-7677

больше 3 лет назад

This affects the package thenify before 3.3.1. The name argument provided to the package can be controlled by users without any sanitization, and this is provided to the eval function without any sanitization.

CVSS3: 8.6
EPSS: Низкий
redhat логотип

CVE-2020-7677

больше 3 лет назад

This affects the package thenify before 3.3.1. The name argument provided to the package can be controlled by users without any sanitization, and this is provided to the eval function without any sanitization.

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2020-7677

больше 3 лет назад

This affects the package thenify before 3.3.1. The name argument provided to the package can be controlled by users without any sanitization, and this is provided to the eval function without any sanitization.

CVSS3: 8.6
EPSS: Низкий
debian логотип

CVE-2020-7677

больше 3 лет назад

This affects the package thenify before 3.3.1. The name argument provi ...

CVSS3: 8.6
EPSS: Низкий
github логотип

GHSA-29xr-v42j-r956

больше 3 лет назад

thenify before 3.3.1 made use of unsafe calls to `eval`.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2020-7677

This affects the package thenify before 3.3.1. The name argument provided to the package can be controlled by users without any sanitization, and this is provided to the eval function without any sanitization.

CVSS3: 8.6
0%
Низкий
больше 3 лет назад
redhat логотип
CVE-2020-7677

This affects the package thenify before 3.3.1. The name argument provided to the package can be controlled by users without any sanitization, and this is provided to the eval function without any sanitization.

CVSS3: 9.8
0%
Низкий
больше 3 лет назад
nvd логотип
CVE-2020-7677

This affects the package thenify before 3.3.1. The name argument provided to the package can be controlled by users without any sanitization, and this is provided to the eval function without any sanitization.

CVSS3: 8.6
0%
Низкий
больше 3 лет назад
debian логотип
CVE-2020-7677

This affects the package thenify before 3.3.1. The name argument provi ...

CVSS3: 8.6
0%
Низкий
больше 3 лет назад
github логотип
GHSA-29xr-v42j-r956

thenify before 3.3.1 made use of unsafe calls to `eval`.

CVSS3: 9.8
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу