Import Source
https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-44547.json
JSON Data
https://api.osv.dev/v1/vulns/AZL-44547
Upstream
Published
2018-06-04T19:29:02Z
Modified
2026-04-21T04:31:23.459406Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
CVE-2017-16042 affecting package js-jquery 3.5.0-4
Details

Growl adds growl notification support to nodejs. Growl before 1.10.2 does not properly sanitize input before passing it to exec, allowing for arbitrary command execution.

References

Affected packages

Azure Linux:3 / js-jquery

Package

Name
js-jquery
Purl
pkg:rpm/azure-linux/js-jquery

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Last affected
3.5.0-4

Database specific

source
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-44547.json"