Versions of the package exec-local-bin prior to 1.2.0 are vulnerable to Command Injection via the theProcess() functionality due to improper user-input sanitization.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
exec-local-bin project exec-local-bin |