Critical severity9.8NVD Advisory· Published Feb 28, 2020· Updated Jun 17, 2026
CVE-2019-10801
CVE-2019-10801
Description
enpeem through 2.2.0 allows execution of arbitrary commands. The "options.dir" argument is provided to the "exec" function without any sanitization.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
enpeemnpm | <= 2.2.0 | — |
Affected products
3- enpeem/enpeemdescription
Patches
Vulnerability mechanics
References
4- snyk.io/vuln/SNYK-JS-ENPEEM-559007nvdExploitThird Party AdvisoryWEB
- github.com/advisories/GHSA-hmw2-mvvh-jf5jghsaADVISORY
- github.com/balderdashy/enpeem/blob/master/index.jsnvdThird Party AdvisoryWEB
- nvd.nist.gov/vuln/detail/CVE-2019-10801ghsaADVISORY
News mentions
0No linked articles in our index yet.