Description
npm/KyleRoss windows-cpu all versions vulnerable to command injection resulting in code execution as Node.js user
Remediation
References
https://nodesecurity.io/advisories/336
Related Vulnerabilities
CVE-2020-28052 Vulnerability in maven package org.bouncycastle:bcprov-ext-jdk14
CVE-2022-1295 Vulnerability in npm package fullpage.js
CVE-2021-21391 Vulnerability in npm package @ckeditor/ckeditor5-widget
CVE-2023-50732 Vulnerability in maven package org.xwiki.platform:xwiki-platform-index-tree-macro
CVE-2021-32732 Vulnerability in maven package org.xwiki.platform:xwiki-platform-administration-ui