Description
OS command injection vulnerability in Turistforeningen node-s3-uploader through 2.0.3 for Node.js allows attackers to execute arbitrary commands via the metadata() function.
Remediation
References
https://advisory.checkmarx.net/advisory/CX-2021-4776
Related Vulnerabilities
CVE-2022-46175 Vulnerability in maven package org.webjars.bower:json5
CVE-2020-7788 Vulnerability in maven package org.webjars.npm:ini
CVE-2020-8913 Vulnerability in maven package com.google.android.play:core
CVE-2017-16152 Vulnerability in npm package static-html-server
CVE-2020-8127 Vulnerability in maven package org.webjars.bowergithub.hakimel:reveal.js