Security Advisory
CVE-2022-25853
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
All versions of the package semver-tags are vulnerable to Command Injection via the getGitTagsRemote function due to improper input sanitization.