Growl adds growl notification support to nodejs. Growl prior to 1.10.2 does not properly sanitize input before passing it to exec, allowing for arbitrary command execution.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
growl project growl |