VYPR

npm package

growl

pkg:npm/growl

Vulnerabilities (1)

  • CVE-2017-16042Jun 4, 2018
    affected < 1.10.0fixed 1.10.0

    Growl adds growl notification support to nodejs. Growl before 1.10.2 does not properly sanitize input before passing it to exec, allowing for arbitrary command execution.