Vuln
·
Scope
首頁
套件
KEV
Critical
深度報告
EN
中
Loading…
npm/shescape — 10 CVEs · VulnScope
pkg:npm/
shescape
共 10 筆 CVE
CRITICAL
1
HIGH
3
MEDIUM
2
LOW
1
✅ 檢查你的版本
檢查
所有已知漏洞
CRITICAL
9.8
CVE-2022-31180
Shescape vulnerable to insufficient escaping of whitespace
>= 1.4.0, < 1.5.8
HIGH
8.6
CVE-2023-40185
Shescape on Windows escaping may be bypassed in threaded context
from 0, < 1.7.4
HIGH
8.1
CVE-2022-31179
Shescape prior to 1.5.8 vulnerable to insufficient escaping of line feeds for CMD
from 0, < 1.5.8
HIGH
7.5
Inefficient Regular Expression Complexity in shescape
>= 1.5.10, < 1.6.1
MEDIUM
6.3
Null characters not escaped
from 0, < 1.1.3
MEDIUM
5.5
Exposure of home directory through shescape on Unix with Bash
>= 1.4.0, < 1.5.1
LOW
3.1
Shescape potential environment variable exposure on Windows with CMD
from 0, < 1.7.1
—
Shescape escape() leaves bracket glob expansion active on Bash, BusyBox, and Dash
from 0, < 2.1.10
—
Withdrawn Advisory: Shescape has possible misidentification of shell due to link chains
from 0, < 2.1.9
—
Shescape has potential environment variable exposure on Windows with CMD
>= 1.7.2, < 2.1.2
CVE-2022-25918
CVE-2021-21384
CVE-2022-24725
CVE-2023-35931
CVE-2026-32094
CVE-2026-30916
CVE-2025-30222