Lucene search

K
osvGoogleOSV:CVE-2019-10787
HistoryFeb 04, 2020 - 9:15 p.m.

CVE-2019-10787

2020-02-0421:15:10
Google
osv.dev
8

7.9 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

71.8%

im-resize through 2.3.2 allows remote attackers to execute arbitrary commands via the “exec” argument. The cmd argument used within index.js, can be controlled by user without any sanitization.

7.9 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

71.8%