Description
The package @acrontum/filesystem-template before 0.0.2 are vulnerable to Arbitrary Command Injection due to the fetchRepo API missing sanitization of the href field of external input.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-m2fc-9h5m-29cm | @acrontum/filesystem-template vulnerable to Command Injection due to fetchRepo API missing sanitization |
References
History
No history.
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2024-09-16T22:41:10.564Z
Reserved: 2022-02-24T00:00:00.000Z
Link: CVE-2022-21186
No data.
Status : Modified
Published: 2022-08-05T05:15:07.147
Modified: 2024-11-21T06:44:03.703
Link: CVE-2022-21186
No data.
OpenCVE Enrichment
No data.
Weaknesses
Github GHSA