Description
npm/KyleRoss windows-cpu all versions vulnerable to command injection resulting in code execution as Node.js user
Remediation
References
https://nodesecurity.io/advisories/336
Related Vulnerabilities
CVE-2022-3978 Vulnerability in npm package nodebb
CVE-2017-16138 Vulnerability in npm package mime
CVE-2018-16484 Vulnerability in npm package m-server
CVE-2020-26291 Vulnerability in maven package org.webjars.bower:urijs
CVE-2021-26118 Vulnerability in maven package org.apache.activemq:artemis-openwire-protocol