QID 981901
QID 981901: Nodejs (npm) Security Update for pomelo-monitor (GHSA-4j54-mxf6-wxx2)
pomelo-monitor through 0.3.7 is vulnerable to Command Injection.It allows injection of arbitrary commands as part of 'pomelo-monitor' params.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-4j54-mxf6-wxx2 for updates pertaining to this vulnerability.
Vendor References
- GHSA-4j54-mxf6-wxx2 -
github.com/advisories/GHSA-4j54-mxf6-wxx2
CVEs related to QID 981901
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-4j54-mxf6-wxx2 | pomelo-monitor |
|