Description
All versions of package launchpad are vulnerable to Command Injection via stop.
Remediation
References
https://github.com/bitovi/launchpad/issues/123%23issuecomment-732188118
https://github.com/bitovi/launchpad/pull/124
https://snyk.io/vuln/SNYK-JS-LAUNCHPAD-1044065
Related Vulnerabilities
CVE-2022-1243 Vulnerability in maven package org.webjars.npm:urijs
CVE-2019-10785 Vulnerability in npm package dojox
CVE-2021-43306 Vulnerability in npm package jquery-validation
CVE-2016-10532 Vulnerability in npm package console-io
CVE-2023-24789 Vulnerability in maven package org.jeecgframework.boot:jeecg-boot-parent