You're viewing a limited, public preview. Log in for full access.
systeminformation has Command Injection via Unsanitized `locate` Output in `versions()`
No AI analysis yet.
systeminformation is a System and OS information library for node.js. Versions prior to 5.31.0 are vulnerable to command injection via unsanitized `locate` output in `versions()`. Version 5.31.0 fixes the issue.
64.2th percentile
This link opens an external site that isn't part of the platform.