Description
OS command injection vulnerability in Turistforeningen node-s3-uploader through 2.0.3 for Node.js allows attackers to execute arbitrary commands via the metadata() function.
Remediation
References
https://advisory.checkmarx.net/advisory/CX-2021-4776
Related Vulnerabilities
CVE-2019-3580 Vulnerability in maven package org.openrefine:openrefine
CVE-2023-50481 Vulnerability in npm package blinksocks
CVE-2021-40822 Vulnerability in maven package org.geoserver:gs-main
CVE-2022-31108 Vulnerability in maven package org.webjars.npm:mermaid
CVE-2017-16008 Vulnerability in maven package org.webjars.bower:i18next