Server side template injection In semver-tags

Description

semver-tags is vulnerable to Command Injection via the getGitTagsRemote function All versions of the package semver-tags are vulnerable to Command Injection via the getGitTagsRemote function due to improper input sanitization.

Mitigation

Update Impact

Minimal update. May introduce new vulnerabilities or breaking changes.

Ecosystem
Package
Affected version