Description
An unintended require vulnerability in script-manager npm package version 0.8.6 and earlier may allow attackers to execute arbitrary code.
Remediation
References
https://hackerone.com/reports/660563
Related Vulnerabilities
CVE-2022-43434 Vulnerability in maven package io.jenkins.plugins:neuvector-vulnerability-scanner
CVE-2022-36094 Vulnerability in maven package org.xwiki.platform:xwiki-platform-web-templates
CVE-2020-28436 Vulnerability in npm package google-cloudstorage-commands
CVE-2022-31367 Vulnerability in npm package strapi-plugin-content-type-builder
CVE-2020-36180 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind