Description
An issue was discovered in the crunch function in shenzhim aaptjs 1.3.1, allows attackers to execute arbitrary code via the filePath parameters.
Remediation
References
https://github.com/shenzhim/aaptjs/issues/2
Related Vulnerabilities
CVE-2023-25345 Vulnerability in npm package swig-templates
CVE-2021-22964 Vulnerability in npm package fastify-static
CVE-2020-14968 Vulnerability in maven package org.webjars.bowergithub.kjur:jsrsasign
CVE-2020-7713 Vulnerability in npm package arr-flatten-unflatten
CVE-2016-4469 Vulnerability in maven package org.apache.archiva:archiva-webapp