OSV 1.4.0 · github-reviewed · 修改于 2021-03-30 06:11
发布时间
2021-04-13 23:17
GitHub 审查时间
2021-03-30 06:11
NVD 发布时间
2020-01-30 06:15
源文件
advisories/github-reviewed/2021/04/GHSA-whq6-mj2r-mjqc/GHSA-whq6-mj2r-mjqc.json
All versions including 0.0.4 of lsof npm module are vulnerable to Command Injection. Every exported method used by the package uses the exec function to parse user input.