Description
All versions of package launchpad are vulnerable to Command Injection via stop.
Remediation
References
https://github.com/bitovi/launchpad/issues/123%23issuecomment-732188118
https://github.com/bitovi/launchpad/pull/124
https://snyk.io/vuln/SNYK-JS-LAUNCHPAD-1044065
Related Vulnerabilities
CVE-2020-6426 Vulnerability in npm package electron
CVE-2020-2228 Vulnerability in maven package org.jenkins-ci.plugins:gitlab-oauth
CVE-2022-41710 Vulnerability in npm package electron-markdownify
CVE-2022-31018 Vulnerability in maven package com.typesafe.play:play_2.12
CVE-2023-40037 Vulnerability in maven package org.apache.nifi:nifi-dbcp-base