GHSA-g4w6-c99w-4wh7
MODERATECVE-2025-57283The Node.js package browserstack-local 1.5.8 contains a command injection vulnerability. This occurs because the logfile variable is not properly sanitized in lib/Local.js.
- Affected
- <= 1.5.8
- Fixed in
- 1.5.9
- Weakness
- CWE-77
- Published
- 2026-01-28
- Source
- github