Filtered by vendor Compile-sass Project Subscriptions
Filtered by product Compile-sass Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2019-10799 1 Compile-sass Project 1 Compile-sass 2024-08-04 8.2 High
compile-sass prior to 1.0.5 allows execution of arbritary commands. The function "setupCleanupOnExit(cssPath)" within "dist/index.js" is executed as part of the "rm" command without any sanitization.