Description
A command injection vulnerability in libnmapp package for versions <0.4.16 allows arbitrary commands to be executed via arguments to the range options.
Remediation
References
https://hackerone.com/reports/390865
Related Vulnerabilities
CVE-2019-12041 Vulnerability in maven package org.webjars.bowergithub.jonschlinkert:remarkable
CVE-2020-28498 Vulnerability in maven package org.webjars.npm:elliptic
CVE-2021-34083 Vulnerability in npm package google-it
CVE-2020-19698 Vulnerability in maven package org.webjars.bower:editor.md
CVE-2022-24198 Vulnerability in maven package com.itextpdf:itext7-core