Filtered by vendor Bower Subscriptions
Filtered by product Bower Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2019-5484 1 Bower 1 Bower 2024-11-21 7.5 High
Bower before 1.8.8 has a path traversal vulnerability permitting file write in arbitrary locations via install command, which allows attackers to write arbitrary files when a malicious package is extracted.