VYPR

npm package

git-shallow-clone

pkg:npm/git-shallow-clone

Vulnerabilities (1)

  • CVE-2024-21531MedOct 1, 2024
    affected <= 0.0.2

    All versions of the package git-shallow-clone are vulnerable to Command injection due to missing sanitization or mitigation flags in the process variable of the gitShallowClone function.