CVE-2019-10802

Publication date

2020-02-28 20:42:09

Family

snyk

State

PUBLISHED

Description

giting version prior to 0.0.8 allows execution of arbritary commands. The first argument "repo" of function "pull()" is executed by the package without any validation.