EggjsCVEs & Vulnerabilities
2 CVEs affecting Eggjs products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
2 CVEs→ All vendors
Most Affected Products
egg-scripts 1extend2 1
CVE-2021-23568CRITICAL
The package extend2 before 1.0.1 are vulnerable to Prototype Pollution via the extend function due to unsafe recursive merge.
10 Jan 2022
9.8
CVSS
CVE-2018-3786CRITICAL
A command injection vulnerability in egg-scripts <v2.8.1 allows arbitrary shell command execution through a maliciously crafted command line argument.
24 Aug 2018
9.8
CVSS
← PrevPage 1 / 1Next →