Total vulnerabilities in the database
This affects the package json before 10.0.0. It is possible to inject arbritary commands using the parseLookup function.
Software | From | Fixed in |
---|---|---|
joyent / json | - | 10.0.0 |
oracle / commerce_guided_search | 11.3.2 | 11.3.2.x |
oracle / timesten_in-memory_database | - | 21.1.1.1.0 |
oracle / financial_services_regulatory_reporting_with_agilereporter | 8.0.9.6.3 | 8.0.9.6.3.x |
oracle / financial_services_crime_and_compliance_management_studio | 8.0.8.2.0 | 8.0.8.2.0.x |
oracle / financial_services_crime_and_compliance_management_studio | 8.0.8.3.0 | 8.0.8.3.0.x |
![]() |
- | 10.0.0 |
![]() |
- | 9.0.6.x |