Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:26494
HistoryAug 26, 2020 - 3:48 a.m.

Arbtirary Code Execution

2020-08-2603:48:47
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13

EPSS

0.009

Percentile

82.3%

grunt is vulnerable to arbitrary code execution. The library uses an insecure .load function from js-yaml by default and allows an attacker to inject and execute arbitrary code.