Vulnerabilities > Codecov > Critical

DATE CVE VULNERABILITY TITLE RISK
2020-07-20 CVE-2020-15123 OS Command Injection vulnerability in Codecov
In codecov (npm package) before version 3.7.1 the upload method has a command injection vulnerability.
network
low complexity
codecov CWE-78
critical
9.3