VDB
Sign up
CRITICAL9.8

GHSA-2xx6-qf7x-grqh

next-npm-version is vulnerable to Command injection

Details

NPM package next-npm-version1.0.1 is vulnerable to Command injection.

Are you affected?

Enter the version of the package you're using.

Affected packages

npm/@jswork/next-npm-version

No fixed version published yet for @jswork/next-npm-version (npm). Pin to a known-safe version or switch to an alternative.

References