VYPR

npm package

pomelo-monitor

pkg:npm/pomelo-monitor

Vulnerabilities (1)

  • CVE-2020-7620Apr 2, 2020
    affected <= 0.3.7

    pomelo-monitor through 0.3.7 is vulnerable to Command Injection.It allows injection of arbitrary commands as part of 'pomelo-monitor' params.