CVE-2018-16462
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 7.0%
exploitation probability
7.0%top 6% of all CVEs
observed exploitation
nono source reports it
A command injection vulnerability in the apex-publish-static-files npm module version <2.0.1 which allows arbitrary shell command execution through a maliciously crafted argument.
Affected products
n/a · apex-publish-static-filesReferences
https://hackerone.com/reports/405694