node-key-sender up to and including 1.0.11 is vulnerable to Command Injection. It allows execution of arbitrary commands via the 'arrParams' argument in the 'execute()' function.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
node-key-sender project node-key-sender |