Vulnerabilities (CVE)

Filtered by vendor Dnt Subscribe
Filtered by product Im-resize
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-10787 1 Dnt 1 Im-resize 2024-02-28 10.0 HIGH 9.8 CRITICAL
im-resize through 2.3.2 allows remote attackers to execute arbitrary commands via the "exec" argument. The cmd argument used within index.js, can be controlled by user without any sanitization.