cve/2020/CVE-2020-7673.md
2024-05-25 21:48:12 +02:00

739 B

CVE-2020-7673

Description

node-extend through 0.2.0 is vulnerable to Arbitrary Code Execution. User input provided to the argument A of extend function(A,B,as,isAargs) located within lib/extend.js is executed by the eval function, resulting in code execution.

POC

Reference

Github

No PoCs found on GitHub currently.