Количество 2
Количество 2
CVE-2022-21165
больше 3 лет назад
All versions of package font-converter are vulnerable to Arbitrary Command Injection due to missing sanitization of input that potentially flows into the child_process.exec() function.
CVSS3: 9.8
EPSS: Низкий
GHSA-g2c3-vwff-m3xr
больше 3 лет назад
Font-Converter Vulnerable to Arbitrary Command Injection
CVSS3: 9.8
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-21165 All versions of package font-converter are vulnerable to Arbitrary Command Injection due to missing sanitization of input that potentially flows into the child_process.exec() function. | CVSS3: 9.8 | 3% Низкий | больше 3 лет назад | |
GHSA-g2c3-vwff-m3xr Font-Converter Vulnerable to Arbitrary Command Injection | CVSS3: 9.8 | 3% Низкий | больше 3 лет назад |
Уязвимостей на страницу
20