CVE-2019-10799
24.02.2020, 18:15
compile-sass prior to 1.0.5 allows execution of arbritary commands. The function "setupCleanupOnExit(cssPath)" within "dist/index.js" is executed as part of the "rm" command without any sanitization.
Vendor | Product | Version |
---|---|---|
compile-sass_project | compile-sass | 𝑥 < 1.0.5 |
𝑥
= Vulnerable software versions