Description
The kill-port-process package version < 2.2.0 is vulnerable to a Command Injection vulnerability.
Remediation
References
https://hackerone.com/reports/661959
Related Vulnerabilities
CVE-2023-26109 Vulnerability in npm package node-bluetooth-serial-port
CVE-2023-49373 Vulnerability in maven package com.jfinal:jfinal
CVE-2022-36077 Vulnerability in npm package electron
CVE-2018-12432 Vulnerability in maven package net.bull.javamelody:javamelody-core
CVE-2023-45143 Vulnerability in maven package org.webjars.npm:undici