Vulnerabilities > Shescape Project
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-08-23 | CVE-2023-40185 | Improper Neutralization of Escape, Meta, or Control Sequences vulnerability in Shescape Project Shescape shescape is simple shell escape library for JavaScript. | 8.6 |
2023-06-23 | CVE-2023-35931 | Information Exposure Through Environmental Variables vulnerability in Shescape Project Shescape Shescape is a simple shell escape library for JavaScript. | 4.3 |
2022-10-27 | CVE-2022-25918 | Unspecified vulnerability in Shescape Project Shescape 1.5.10/1.6.0 The package shescape from 1.5.10 and before 1.6.1 are vulnerable to Regular Expression Denial of Service (ReDoS) via the escape function in index.js, due to the usage of insecure regex in the escapeArgBash function. | 7.5 |
2022-09-06 | CVE-2022-36064 | Unspecified vulnerability in Shescape Project Shescape Shescape is a shell escape package for JavaScript. | 7.5 |
2022-08-01 | CVE-2022-31180 | Unspecified vulnerability in Shescape Project Shescape Shescape is a simple shell escape package for JavaScript. | 9.8 |
2022-03-03 | CVE-2022-24725 | OS Command Injection vulnerability in Shescape Project Shescape 1.4.0/1.5.0 Shescape is a shell escape package for JavaScript. | 5.5 |
2021-03-19 | CVE-2021-21384 | Argument Injection or Modification vulnerability in Shescape Project Shescape shescape is a simple shell escape package for JavaScript. | 4.4 |