Back to search
CVE-2020-7675
Published: Jun 10, 2020
Modified: Aug 4, 2024
PUBLISHED
Description
cd-messenger through 2.7.26 is vulnerable to Arbitrary Code Execution. User input provided to the `color` argument executed by the `eval` function resulting in code execution.
| Vendor | Product | Versions |
|---|---|---|
n/a | cd-messenger | affected All versions including 2.7.26 |
References
https://snyk.io/vuln/SNYK-JS-CDMESSENGER-571493
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now