VYPR

Snyk Security

by Rich Harris

CVEs (1)

  • CVE-2022-24441MedNov 30, 2022
    risk 0.31cvss 5.8epss 0.01

    The package snyk before 1.1064.0 are vulnerable to Code Injection when analyzing a project. An attacker who can convince a user to scan a malicious project can include commands in a build file such as build.gradle or gradle-wrapper.jar, which will be executed with the privileges…