Akshat Sinha discovered that incorrect input sanitising in node-shell-quote, a Node.js module to quote and parse shell commands, could result in shell command injection.
https://security-tracker.debian.org/tracker/DSA-6300-1
Continue reading...
https://security-tracker.debian.org/tracker/DSA-6300-1
Continue reading...

