Vulnerability Database
Blog
FAQ
Docs
CVE-2022-0144
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2022-0144
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-0144.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-0144
Aliases
GHSA-4rq4-32rv-6wp6
Related
UBUNTU-CVE-2022-0144
Published
2022-01-11T07:15:07Z
Modified
2024-10-12T08:41:16.556204Z
Severity
7.1 (High)
CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
CVSS Calculator
Summary
[none]
Details
shelljs is vulnerable to Improper Privilege Management
References
https://huntr.dev/bounties/50996581-c08e-4eed-a90e-c0bac082679c
https://github.com/shelljs/shelljs/commit/d919d22dd6de385edaa9d90313075a77f74b338c
https://security-tracker.debian.org/tracker/CVE-2022-0144
Affected packages
Debian:11
/
node-shelljs
Package
Name
node-shelljs
Purl
pkg:deb/debian/node-shelljs?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Affected versions
0.*
0.8.3-1
0.8.4+~cs0.8.9-1
0.8.5+~cs0.8.10-1
0.8.5+~cs0.8.10-2
Ecosystem specific
{ "urgency": "not yet assigned" }
Debian:12
/
node-shelljs
Package
Name
node-shelljs
Purl
pkg:deb/debian/node-shelljs?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0.8.5+~cs0.8.10-1
Ecosystem specific
{ "urgency": "not yet assigned" }
Debian:13
/
node-shelljs
Package
Name
node-shelljs
Purl
pkg:deb/debian/node-shelljs?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0.8.5+~cs0.8.10-1
Ecosystem specific
{ "urgency": "not yet assigned" }
Git
/
github.com/shelljs/shelljs
Affected ranges
Type
GIT
Repo
https://github.com/shelljs/shelljs
Events
Introduced
0
Unknown introduced commit / All previous commits are affected
Fixed
d919d22dd6de385edaa9d90313075a77f74b338c
Affected versions
v0.*
v0.0.2
v0.0.2pre1
v0.0.3
v0.0.4
v0.0.5
v0.0.5pre1
v0.0.5pre2
v0.0.5pre3
v0.0.5pre4
v0.0.6
v0.0.6pre1
v0.0.6pre2
v0.0.7
v0.0.8
v0.0.9
v0.1.0
v0.1.1
v0.1.2
v0.1.3
v0.2.2
v0.2.3
v0.2.4
v0.2.5
v0.2.6
v0.3.0
v0.5.0
v0.5.1
v0.5.2
v0.5.3
v0.6.0
v0.7.0
v0.7.1
v0.7.2
v0.7.3
v0.7.4
v0.7.5
v0.7.6
v0.7.7
v0.7.8
v0.8.0
v0.8.1
v0.8.2
v0.8.3
v0.8.4
CVE-2022-0144 - OSV