GHSA-x73w-g8hx-v7rpCriticalCVSS 9.8

electerm allows unauthorized users to execute arbitrary commands

Published
January 20, 2023
Last Modified
May 20, 2026

🔗 CVE IDs covered (1)

📋 Description

An issue was discovered in Electerm 1.3.22, allows attackers to execute arbitrary commands via unverified request to electerms service.

🎯 Affected products1

  • npm/electerm:<= 1.3.22

🔗 References (3)