VYPR

Spark Studio

by Meta

CVEs (1)

  • CVE-2024-23347HigJan 16, 2024
    risk 0.51cvss 7.8epss 0.00

    Prior to v176, when opening a new project Meta Spark Studio would execute scripts defined inside of a package.json file included as part of that project. Those scripts would have the ability to execute arbitrary code on the system as the application.