CVE-2020-7678

This affects all versions of package node-import. The "params" argument of module function can be controlled by users without any sanitization.b. This is then provided to the “eval” function located in line 79 in the index file "index.js".
References
Configurations

Configuration 1

cpe:2.3:a:node-import_project:node-import:*:*:*:*:*:node.js:*:*

Information

Published : 2022-07-25 02:15

Updated : 2022-08-01 05:38


NVD link : CVE-2020-7678

Mitre link : CVE-2020-7678

Products Affected
No products.