Remote Code Execution Vulnerability in Promise Probe by Dottgonzo
CVE-2019-10791
9.8CRITICAL
What is CVE-2019-10791?
The Promise Probe library, specifically versions before 0.10.0, is susceptible to a command injection flaw that allows attackers to manipulate file and option parameters without appropriate sanitization. This vulnerability can enable unauthorized command execution from a remote location, posing significant security risks to applications utilizing the library.
Affected Version(s)
promise-probe All versions prior to version 0.10.0
