Security Advisory
CVE-2019-10789
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
All versions of curling.js are vulnerable to Command Injection via the run function. The command argument can be controlled by users without any sanitization.