Vulnerabilities/

Command Injection in ungit (GHSA-vjfr-p6hp-jqqw)

Severity:
High

Description

Versions of ungit prior to 0.9.0 are affected by a command injection vulnerability in the url parameter.

Recommendation

Update the ungit package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
ungit
Anything's wrong? Let us know Last updated on January 09, 2023

This issue is available in SmartScanner Professional

See Pricing