Vulnerabilities > Whereis Project
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2018-07-30 | CVE-2018-3772 | Improper Input Validation vulnerability in Whereis Project Whereis Concatenating unsanitized user input in the `whereis` npm module < 0.4.1 allowed an attacker to execute arbitrary commands. | 9.8 |