cve/2022/CVE-2022-25906.md
2024-06-18 02:51:15 +02:00

678 B

CVE-2022-25906

Description

All versions of the package is-http2 are vulnerable to Command Injection due to missing input sanitization or other checks, and sandboxes being employed to the isH2 function.

POC

Reference

Github

No PoCs found on GitHub currently.