CVE-2019-15597
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 2.7%
exploitation probability
2.7%top 14% of all CVEs
observed exploitation
nono source reports it
A code injection exists in node-df v0.1.4 that can allow an attacker to remote code execution by unsanitized input.
Affected products
n/a · node-dfReferences
https://hackerone.com/reports/703412