Severity: high

Remote Code Execution

react-dev-utils

Overview

react-dev-utils on Windows is vulnerable to remote code execution.

Remediation

Update to one of the follow versions, depending on the release line that you are using.

  • 1.0.4
  • 2.0.2
  • 3.1.2
  • 4.2.2
  • 5.0.2
  • 6.0.0-next.a671462c

Advisory timeline

  1. Created

    2018-08-29T17:23:57.974Z
  2. Updated

    2018-09-20T23:22:07.307Z