Beveiligingsadvies

CVE-2022-21165

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-08-29 05:00:17
Laatst bijgewerkt 2024-09-17 04:15:11
Toegewezen door snyk
CVSS-score 9.8
Status PUBLISHED

Beschrijving

All versions of package font-converter are vulnerable to Arbitrary Command Injection due to missing sanitization of input that potentially flows into the child_process.exec() function.