Description
A command Injection in ps package versions <1.0.0 for Node.js allowed arbitrary commands to be executed when attacker controls the PID.
Remediation
References
https://hackerone.com/reports/390848
Related Vulnerabilities
CVE-2020-36320 Vulnerability in maven package com.vaadin:vaadin-server
CVE-2016-5395 Vulnerability in maven package org.apache.ranger:ranger
CVE-2015-2918 Vulnerability in maven package com.orientechnologies:orientdb-studio
CVE-2023-30523 Vulnerability in maven package org.jenkins-ci.plugins:reportportal
CVE-2021-41411 Vulnerability in maven package org.drools:drools-core