VYPR

Node Rules

by Node Rules Project

CVEs (1)

  • CVE-2020-7609CriApr 27, 2020
    risk 0.57cvss 9.8epss 0.02

    node-rules including 3.0.0 and prior to 5.0.0 allows injection of arbitrary commands. The argument rules of function "fromJSON()" can be controlled by users without any sanitization.