Vulnerabilities > Totaljs > Total JS > 3.4.9
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-10-30 | CVE-2022-44019 | OS Command Injection vulnerability in Totaljs Total.Js In Total.js 4 before 0e5ace7, /api/common/ping can achieve remote command execution via shell metacharacters in the host parameter. | 8.8 |