CVE-2020-7795

The package get-npm-package-version before 1.0.7 are vulnerable to Command Injection via main function in index.js.
Configurations

Configuration 1 (hide)

cpe:2.3:a:get-npm-package-version_project:get-npm-package-version:*:*:*:*:*:node.js:*:*

History

No history.

Information

Published : 2022-08-02 14:15

Updated : 2022-08-05 15:58


NVD link : CVE-2020-7795

Mitre link : CVE-2020-7795

CVE.ORG link : CVE-2020-7795


JSON object : View

Products Affected

get-npm-package-version_project

  • get-npm-package-version
CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')