QID 982800
QID 982800: Nodejs (npm) Security Update for hubot-scripts (GHSA-hwch-749c-rv63)
Versions 2.4.3 and earlier of hubot-scripts are vulnerable to a command injection vulnerablity in the `hubot-scripts/package/src/scripts/email.coffee` module.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-hwch-749c-rv63 for updates pertaining to this vulnerability.
Vendor References
- GHSA-hwch-749c-rv63 -
github.com/advisories/GHSA-hwch-749c-rv63
CVEs related to QID 982800
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-hwch-749c-rv63 | hubot-scripts |
|