Description
An issue was discovered in the list function in shenzhim aaptjs 1.3.1, allows attackers to execute arbitrary code via the filePath parameters.
Remediation
References
https://github.com/shenzhim/aaptjs/issues/2
Related Vulnerabilities
CVE-2021-23362 Vulnerability in maven package org.webjars.npm:hosted-git-info
CVE-2022-4640 Vulnerability in maven package net.mingsoft:ms-mcms
CVE-2022-21680 Vulnerability in npm package marked
CVE-2020-36048 Vulnerability in maven package org.webjars.bower:engine.io
CVE-2021-23384 Vulnerability in npm package koa-remove-trailing-slashes