Critical severity9.8NVD Advisory· Published May 3, 2021· Updated Jun 17, 2026
CVE-2021-29369
CVE-2021-29369
Description
The gnuplot package prior to version 0.1.0 for Node.js allows code execution via shell metacharacters in Gnuplot commands.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
@rkesters/gnuplotnpm | < 0.1.1 | 0.1.1 |
Affected products
3- Node.js/gnuplotdescription
Patches
Vulnerability mechanics
References
5- github.com/rkesters/gnuplot/commit/23671d4d3d28570fb19a936a6328bfac742410denvdPatchThird Party AdvisoryWEB
- github.com/advisories/GHSA-f2jw-pr2c-9x96ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2021-29369ghsaADVISORY
- www.npmjs.com/package/@rkesters/gnuplotghsaPACKAGE
- www.npmjs.com/package/%40rkesters/gnuplotnvd
News mentions
0No linked articles in our index yet.