Description
npm/KyleRoss windows-cpu all versions vulnerable to command injection resulting in code execution as Node.js user
Remediation
References
https://nodesecurity.io/advisories/336
Related Vulnerabilities
CVE-2021-23463 Vulnerability in maven package com.h2database:h2
CVE-2021-23337 Vulnerability in maven package org.webjars.bowergithub.lodash:lodash
CVE-2023-22579 Vulnerability in npm package @sequelize/core
CVE-2021-21160 Vulnerability in npm package electron
CVE-2023-26111 Vulnerability in npm package @nubosoftware/node-static