CVE-2025-57283
EUVD-2025-20649128.01.2026, 16:16
The Node.js package browserstack-local 1.5.8 contains a command injection vulnerability. This occurs because the logfile variable is not properly sanitized in lib/Local.js.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| browserstack | browserstack-local | 1.5.8 |
𝑥
= Vulnerable software versions