VYPR

npm package

cycle-import-check

pkg:npm/cycle-import-check

Vulnerabilities (1)

  • CVE-2022-24377Dec 15, 2022
    affected < 1.3.2fixed 1.3.2

    The package cycle-import-check before 1.3.2 are vulnerable to Command Injection via the writeFileToTmpDirAndOpenIt function due to improper user-input sanitization.