Vulnerabilities > NPM Programmatic Project

DATE CVE VULNERABILITY TITLE RISK
2020-04-07 CVE-2020-7614 OS Command Injection vulnerability in Npm-Programmatic Project Npm-Programmatic 0.0.12
npm-programmatic through 0.0.12 is vulnerable to Command Injection.The packages and option properties are concatenated together without any validation and are used by the 'exec' function directly.
network
low complexity
npm-programmatic-project CWE-78
critical
9.8