Security Advisory

CVE-2020-28437

9.4
CRITICAL

Vulnerability Description

This affects all versions of package heroku-env. The injection point is located in lib/get.js which is required by index.js.
Published Date August 2, 2022
Official Source NIST NVD Advisory