QID 982345
QID 982345: Nodejs (npm) Security Update for @ronomon/opened (GHSA-fg5w-w99f-rj6w)
The @ronomon/opened library before 1.5.2 is vulnerable to a command injection vulnerability which would allow a remote attacker to execute commands on the system if the library was used with untrusted input.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-fg5w-w99f-rj6w for updates pertaining to this vulnerability.
Vendor References
- GHSA-fg5w-w99f-rj6w -
github.com/advisories/GHSA-fg5w-w99f-rj6w
CVEs related to QID 982345
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-fg5w-w99f-rj6w | @ronomon/opened |
|