9.8
CVSSv3

CVE-2018-25083

Published: 27/03/2023 Updated: 31/03/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

The pullit package prior to 1.4.0 for Node.js allows OS Command Injection because eval is used on an attacker-supplied Git branch name.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

pull it project pull it