Description
A command Injection in ps package versions <1.0.0 for Node.js allowed arbitrary commands to be executed when attacker controls the PID.
Remediation
References
https://hackerone.com/reports/390848
Related Vulnerabilities
CVE-2020-7723 Vulnerability in npm package promisehelpers
CVE-2019-10289 Vulnerability in maven package org.jenkins-ci.plugins:netsparker-cloud-scan
CVE-2022-25875 Vulnerability in npm package svelte
CVE-2017-16017 Vulnerability in npm package sanitize-html
CVE-2023-28709 Vulnerability in maven package org.apache.tomcat:tomcat-catalina