EPSS
Percentile
93.7%
compass-compile through 0.0.1 is vulnerable to Command Injection. It allows execution of arbitrary commands via the options argument.
github.com/quaertym/compass-compile
github.com/quaertym/compass-compile/blob/master/lib/compass.js#L25
nvd.nist.gov/vuln/detail/CVE-2020-7635
snyk.io/vuln/SNYK-JS-COMPASSCOMPILE-564429