CVE-2021-21315: System Information Library for Node.JS Command Injection
In this vulnerability, an attacker can send a malicious payload that will exploit the name parameter. After successful exploitation, attackers can execute remote. Required action: Apply updates per vendor instructions.
CISA KEV ↗ · unattributed attribution · 1 IOC