CVE-2020-7646

Severity CVSS v4.0:
Pending analysis
Type:
CWE-78 OS Command Injections
Publication date:
07/05/2020
Last modified:
07/11/2023

Description

curlrequest through 1.0.1 allows reading any file by populating the file parameter with user input.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:curlrequest_project:curlrequest:*:*:*:*:*:node.js:*:* 1.0.1 (including)