Install-package ProjectCVEs & Vulnerabilities
2 CVEs affecting Install-package Project products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
2 CVEs→ All vendors
Most Affected Products
install-package 2
CVE-2020-7629CRITICAL
install-package through 0.4.0 is vulnerable to Command Injection. It allows execution of arbitrary commands via the options argument.
3 Apr 2020
9.8
CVSS
CVE-2020-7628CRITICAL
umount through 1.1.6 is vulnerable to Command Injection. The argument device can be controlled by users without any sanitization.
3 Apr 2020
9.8
CVSS
← PrevPage 1 / 1Next →