GHSA-3c6g-pvg8-gqw2
HIGHCVE-2020-7712This affects the package json before 10.0.0. It is possible to inject arbritary commands using the parseLookup function.
- Affected
- < 10.0.0
- Fixed in
- 10.0.0
- Weakness
- CWE-78
- Published
- 2021-05-06
- Source
- github
GHSANVDMITREreferencereferencereferencereferencereferencereferencereferencereferencereference