Description
All versions of package mc-kill-port are vulnerable to Arbitrary Command Execution via the kill function, due to missing sanitization of the port argument.
Remediation
References
https://security.snyk.io/vuln/SNYK-JS-MCKILLPORT-2419070
https://www.npmjs.com/package/mc-kill-port
Related Vulnerabilities
CVE-2020-28481 Vulnerability in npm package socket.io
CVE-2021-29624 Vulnerability in npm package fastify-csrf
CVE-2022-36098 Vulnerability in maven package org.xwiki.platform:xwiki-platform-mentions-ui
CVE-2023-26109 Vulnerability in npm package node-bluetooth-serial-port
CVE-2023-28709 Vulnerability in maven package org.apache.tomcat:tomcat-catalina