CVE-2013-7377: Codem-Transcode Project Codem-Transcode
High severity, CVSS 8.1. EPSS: 2% chance of exploitation in the next 30 days.
The codem-transcode module before 0.5.0 for Node.js, when ffprobe is enabled, allows remote attackers to execute arbitrary commands via a POST request to /probe.
Affected products
- Codem-Transcode Project Codem-Transcode: version 0.4.1 only; version 0.4.2 only; version 0.4.3 only; version 0.4.4 only; version 0.5.0 only
Published 2017-10-23. Last modified 2026-06-17.