VYPR

npm package

bwm-ng

pkg:npm/bwm-ng

Vulnerabilities (1)

  • CVE-2023-26129May 27, 2023
    affected <= 0.1.1

    All versions of the package bwm-ng are vulnerable to Command Injection due to improper input sanitization in the 'check' function in the bwm-ng.js file. **Note:** To execute the code snippet and potentially exploit the vulnerability, the attacker needs to have the ability to r