Security Advisory

CVE-2022-24377

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-12-15 03:44:03
Last updated 2025-04-17 18:32:28
Assigner snyk
State PUBLISHED

Description

The package cycle-import-check before 1.3.2 are vulnerable to Command Injection via the writeFileToTmpDirAndOpenIt function due to improper user-input sanitization.