VDB
KO
CRITICAL 9.8

GHSA-xp4x-j9vh-c3wf

OS Command Injection and Command Injection in kill-port-process

Details

The kill-port-process package prior to version 2.2.0 is vulnerable to a Command Injection.

Are you affected?

Enter the version of the package you're using.

Affected packages

npm / kill-port-process
Introduced in: 0 Fixed in: 2.2.0
Fix npm install kill-port-process@2.2.0

References