node-windows@0.1.9 vulnerabilities
Support for Windows services, event logging, UAC, and several helper methods for interacting with the OS.
-
latest version
1.0.0-beta.8
-
latest non vulnerable version
-
first published
12 years ago
-
latest version published
2 years ago
-
licenses detected
- >=0
Direct Vulnerabilities
Known vulnerabilities in the node-windows package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.Vulnerability | Vulnerable Version |
---|---|
node-windows is a Support for Windows services, event logging, UAC, and several helper methods for interacting with the OS. Affected versions of this package are vulnerable to Command Injection due to missing input validation in the POC:
Note: This vulnerability is only relevant for Windows OS. How to fix Command Injection? Upgrade |
<1.0.0-beta.6
|