CVE-2022-21165

Publication date

2022-08-29 05:00:17

Family

snyk

State

PUBLISHED

Description

All versions of package font-converter are vulnerable to Arbitrary Command Injection due to missing sanitization of input that potentially flows into the child_process.exec() function.