VYPR

Node Notifier

by Node Notifier Project

CVEs (1)

  • CVE-2020-7789MedDec 11, 2020
    risk 0.30cvss 5.6epss 0.02

    This affects the package node-notifier before 9.0.0. It allows an attacker to run arbitrary commands on Linux machines due to the options params not being sanitised when being passed an array.