Advisories for Npm/Giting package

2020

OS Command Injection

The package giting allows execution of arbritary commands. The first argument repo of function pull() is executed by the package without any validation.