← Back to browse · API

CVE-2020-28440

Severity
CRITICAL
CVSS
9.8
EPSS
0.01963
Risk score
39.89
CISA KEV
No
PoC
No
Published
2020-12-11
Modified
2024-09-16
First seen
2026-08-07
Aliases
EUVD-2020-1493, GHSA-FFXG-XM4W-3WG9
Products
n/a:corenlp-js-interface 0 <unspecified
Sources
euvd EUVD-2020-1493

Description

All versions of package corenlp-js-interface are vulnerable to Command Injection via the main function.

References