Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-28490

The package async-git before 1.13.2 are vulnerable to Command Injection via shell meta-characters (back-ticks). For example: git.reset('atouch HACKEDb')
Exploit prediction scoring system (EPSS) score
EPSS Score 0.052
EPSS Ranking 89.5%
CVSS Severity
CVSS v3 Score 9.1
CVSS v2 Score 7.5
Products affected by CVE-2020-28490


Contact Us

Shodan ® - All rights reserved