Description
All versions of package git-archive are vulnerable to Command Injection via the exports function.
Remediation
References
https://security.snyk.io/vuln/SNYK-JS-GITARCHIVE-1050391
Related Vulnerabilities
CVE-2023-26111 Vulnerability in npm package node-static
CVE-2023-40817 Vulnerability in maven package org.opencrx:opencrx-core-models
CVE-2021-21290 Vulnerability in maven package io.netty:netty-codec-http
CVE-2019-10431 Vulnerability in maven package org.jenkins-ci.plugins:script-security
CVE-2020-8203 Vulnerability in maven package org.fujion.webjars:lodash