Description
All versions of package git-archive are vulnerable to Command Injection via the exports function.
Remediation
References
https://security.snyk.io/vuln/SNYK-JS-GITARCHIVE-1050391
Related Vulnerabilities
CVE-2017-4971 Vulnerability in maven package org.springframework.webflow:spring-webflow
CVE-2017-15695 Vulnerability in maven package org.apache.geode:geode-core
CVE-2022-0624 Vulnerability in maven package org.webjars.npm:parse-path
CVE-2020-7769 Vulnerability in npm package nodemailer
CVE-2022-25858 Vulnerability in maven package org.webjars.npm:terser