killport@1.0.0 vulnerabilities
a nodejs module to kill any processes base on its port
-
latest version
1.0.2
-
latest non vulnerable version
-
first published
10 years ago
-
latest version published
4 years ago
-
licenses detected
- >=0
Direct Vulnerabilities
Known vulnerabilities in the killport package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.Vulnerability | Vulnerable Version |
---|---|
killport is an a nodejs module to kill any processes base on its port Affected versions of this package are vulnerable to Arbitrary Command Injection. If (attacker-controlled) user input is given, it is possible for an attacker to execute arbitrary commands.
This is due to use of the Running this PoC will cause the command PoC (provided by reporter):
How to fix Arbitrary Command Injection? Upgrade |
<1.0.2
|