CVE-2026-49402 - Deno: Command Injection via spawnSync & spawn on Windows
CVE ID :CVE-2026-49402 Published : June 23, 2026, 5:20 p.m. | 3 hours, 49 minutes ago Description :Deno is a JavaScript, TypeScript, and WebAssembly runtime. Prior to 2.7.10, Deno's node:child_process implementation provided an escapeShellArg() helper used when callers passed shell: true to...