VYPR

npm package

curling

pkg:npm/curling

Vulnerabilities (1)

  • CVE-2019-10789Feb 6, 2020
    affected < 1.1.0fixed 1.1.0

    All versions of curling.js are vulnerable to Command Injection via the run function. The command argument can be controlled by users without any sanitization.