VYPR

npm package

lsof

pkg:npm/lsof

Vulnerabilities (1)

  • CVE-2019-10783Jan 29, 2020
    affected <= 0.0.4

    All versions including 0.0.4 of lsof npm module are vulnerable to Command Injection. Every exported method used by the package uses the exec function to parse user input.