In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade compass-preferences-model
to version 2.18.1 or higher.
compass-preferences-model is a Compass preferences model
Affected versions of this package are vulnerable to Untrusted Search Path due to the improper handling of file storage in the C:\node_modules\
directory. An attacker can execute unauthorized actions with elevated privileges by storing a crafted file in this specific directory.
Note:
This is only exploitable if the user executes MongoDB Compass with elevated privileges.