Description
npm/KyleRoss windows-cpu all versions vulnerable to command injection resulting in code execution as Node.js user
Remediation
References
https://nodesecurity.io/advisories/336
Related Vulnerabilities
CVE-2023-24998 Vulnerability in maven package commons-fileupload:commons-fileupload
CVE-2020-36049 Vulnerability in maven package org.webjars.npm:socket.io-parser
CVE-2020-28276 Vulnerability in npm package deep-set
CVE-2020-35491 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2020-6858 Vulnerability in maven package com.hotels.styx:styx-api