Description
The kill-port-process package version < 2.2.0 is vulnerable to a Command Injection vulnerability.
Remediation
References
https://hackerone.com/reports/661959
Related Vulnerabilities
CVE-2023-45133 Vulnerability in npm package babel-traverse
CVE-2022-41713 Vulnerability in npm package deep-object-diff
CVE-2022-31189 Vulnerability in maven package org.dspace:dspace-jspui
CVE-2022-36895 Vulnerability in maven package com.compuware.jenkins:compuware-topaz-utilities
CVE-2022-36313 Vulnerability in maven package org.webjars.npm:file-type