cocos-utils@1.0.0 vulnerabilities

Utils for cocos2d-html5

Direct Vulnerabilities

Known vulnerabilities in the cocos-utils package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • C
Arbitrary Code Execution

cocos-utils is a tool to support NPM branch of Cocos2d-html5 only, aims to help developers using cocos2d-html5 easily.

Affected versions of this package are vulnerable to Arbitrary Code Execution. The unzip() function concatenates user input to exec() which may allow attackers to execute arbitrary commands.

How to fix Arbitrary Code Execution?

There is no fixed version for cocos-utils.

*