← Back to CVE List
CVE-2020-7627
node-key-sender through 1.0.11 is vulnerable to Command Injection. It allows execution of arbitrary commands via the 'arrParams' argument in the 'execute()' function.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt