CVE-2020-7688
Published
CVSS v3
8.4
HIGH
CVSS v2
4.6
MEDIUM
Affected
2
PROJECTS
Description
The issue occurs because tagName user input is formatted inside the exec function is executed without any checks.
A cross packaging module version bumper. CLI or API for bumping versions of package.json, bower.json, *.jquery.json etc.