CVE-2021-26275
Summary
| CVE | CVE-2021-26275 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-03-19 00:15:00 UTC |
| Updated | 2023-11-07 03:31:00 UTC |
| Description | ** UNSUPPORTED WHEN ASSIGNED ** The eslint-fixer package through 0.1.5 for Node.js allows command injection via shell metacharacters to the fix function. NOTE: This vulnerability only affects products that are no longer supported by the maintainer. The ozum/eslint-fixer GitHub repository has been intentionally deleted. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 982787 Nodejs (npm) Security Update for eslint-fixer (GHSA-45w5-pvr8-4rh5)