CVE-2021-34080

EPSS 14.7%

OS Command injection in ssl-utils

Published: 6/3/2022Modified: 11/8/2023
Also known as:GHSA-552j-pv39-f3jf

Description

OS Command Injection vulnerability in es128 ssl-utils 1.0.0 for Node.js allows attackers to execute arbitrary commands via unsanitized shell metacharacters provided to the createCertRequest() and the createCert() functions.

Affected packages (1)

References (3)