Description
An issue was discovered in the crunch function in shenzhim aaptjs 1.3.1, allows attackers to execute arbitrary code via the filePath parameters.
Remediation
References
https://github.com/shenzhim/aaptjs/issues/2
Related Vulnerabilities
CVE-2020-7686 Vulnerability in npm package rollup-plugin-dev-server
CVE-2020-7733 Vulnerability in maven package org.webjars.npm:ua-parser-js
CVE-2013-4152 Vulnerability in maven package org.springframework:spring-web
CVE-2014-3120 Vulnerability in maven package org.elasticsearch:elasticsearch
CVE-2021-21428 Vulnerability in maven package org.openapitools:openapi-generator-online