CVE-2021-33360 Information
Mar 11, 2023
cve
Description
An issue found in Stoqey gnuplot v.0.0.3 and earlier allows attackers to execute arbitrary code via the src/index.ts plotCallack child_process and/or filePath parameter(s).
Reference
https://advisory.checkmarx.net/advisory/CX-2021-4811/ https://github.com/stoqey/gnuplot/blob/cd76060a15f58348baeef1c5fd867ce856515949/src/index.ts#L211-L217
Share on: