The pullit package before 1.4.0 for... CVE-2018-25083

- AV AC AU C I A
发布: 2023-03-27
修订: 2023-03-31

The pullit package before 1.4.0 for Node.js allows OS Command Injection because eval is used on an attacker-supplied Git branch name.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息