Security Advisory
CVE-2022-25908
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
All versions of the package create-choo-electron are vulnerable to Command Injection via the devInstall function due to improper user-input sanitization.