CVE-2024-27980 - Node.js Child Process Code Execution
CVE ID : CVE-2024-27980 Published : Jan. 9, 2025, 1:15 a.m. | 1 hour, 59 minutes ago Description : Due to the improper handling of batch files in child_process.spawn / child_process.spawnSync, a malicious command line argument can inject arbitrary commands and achieve code execution even if the shell option is not enabled. Severity: 8.1 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Jan. 9, 2025, 1:15 a.m. | 1 hour, 59 minutes ago
Description : Due to the improper handling of batch files in child_process.spawn / child_process.spawnSync, a malicious command line argument can inject arbitrary commands and achieve code execution even if the shell option is not enabled.
Severity: 8.1 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...