Beveiligingsadvies

CVE-2019-10799

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2020-02-24 17:42:03
Laatst bijgewerkt 2024-08-04 22:32:02
Toegewezen door snyk
CVSS-score geen score
Status PUBLISHED

Beschrijving

compile-sass prior to 1.0.5 allows execution of arbritary commands. The function "setupCleanupOnExit(cssPath)" within "dist/index.js" is executed as part of the "rm" command without any sanitization.