CVE-2020-7738
02.10.2020, 10:15
All versions of package shiba are vulnerable to Arbitrary Code Execution due to the default usage of the function load() of the package js-yaml instead of its secure replacement , safeLoad().Enginsight
| Vendor | Product | Version |
|---|---|---|
| shiba_project | shiba | * |
𝑥
= Vulnerable software versions