QID 980216
QID 980216: Nodejs (npm) Security Update for dns-sync (GHSA-wh69-wc6q-7888)
dns-sync through 0.2.0 allows execution of arbitrary commands . This issue may lead to remote code execution if a client of the library calls the vulnerable method with untrusted input.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-wh69-wc6q-7888 for updates pertaining to this vulnerability.
Vendor References
- GHSA-wh69-wc6q-7888 -
github.com/advisories/GHSA-wh69-wc6q-7888
CVEs related to QID 980216
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-wh69-wc6q-7888 | dns-sync |
|