Lucene search

K
osvGoogleOSV:CVE-2020-11079
HistoryMay 28, 2020 - 7:15 p.m.

CVE-2020-11079

2020-05-2819:15:10
Google
osv.dev
4

9.9 High

AI Score

Confidence

High

0.009 Low

EPSS

Percentile

83.0%

node-dns-sync (npm module dns-sync) through 0.2.0 allows execution of arbitrary commands . This issue may lead to remote code execution if a client of the library calls the vulnerable method with untrusted input. This has been fixed in 0.2.1.

CPENameOperatorVersion
node-dns-synceq0.1.3

9.9 High

AI Score

Confidence

High

0.009 Low

EPSS

Percentile

83.0%