VYPR

npm package

install-package

pkg:npm/install-package

Vulnerabilities (1)

  • CVE-2020-7629Apr 2, 2020
    affected <= 0.4.0

    install-package through 0.4.0 is vulnerable to Command Injection. It allows execution of arbitrary commands via the options argument.