VYPR
Critical severity9.8GHSA Advisory· Published Mar 15, 2020· Updated Jun 17, 2026

CVE-2020-7603

CVE-2020-7603

Description

closure-compiler-stream through 0.1.15 allows execution of arbitrary commands. The argument "options" of the exports function in "index.js" can be controlled by users without any sanitization.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
closure-compiler-streamnpm
<= 0.1.15

Affected products

3

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.