CVE-2020-7640
Published Apr 27, 2020pixl-class prior to 1.0.3 allows execution of arbitrary commands. The members argument of the create function can be controlled by users without any sanitization.
Vendor archive
1 CVEs tagged to vendor pixlcore — 1 Critical, 0 High, 0 Medium, 0 Low, 0 Unrated.
pixl-class prior to 1.0.3 allows execution of arbitrary commands. The members argument of the create function can be controlled by users without any sanitization.