CVE-2026-107703 - @enmaso/node-convert through 1.0.0 OS Command Injection via filepath and convertTo
CVE ID :CVE-2026-107703 Published : Oct. 8, 2026, 6:36 p.m. | 52 minutes ago Description :@enmaso/node-convert through 1.0.0 contains an OS command injection vulnerability in convert.js that allows attackers to execute shell commands via unsanitized filepath and convertTo arguments. Attackers...