CVE-2019-5414: OS Command Injection
(updated )
If an attacker can control the port, which in itself is a very sensitive value, they can inject arbitrary OS commands due to the usage of the exec
function in a third-party module.
References
Detect and mitigate CVE-2019-5414 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →