CVE-2019-10801: OS Command Injection in enpeem

Severity: Critical

CVSS Score: 9.8

enpeem through 2.2.0 allows execution of arbitrary commands. The "options.dir" argument is provided to the "exec" function without any sanitization.