CVE-2017-1000219: Windows-CPU Project Windows-CPU

Critical severity, CVSS 9.8. EPSS: 4.2% chance of exploitation in the next 30 days.

npm/KyleRoss windows-cpu all versions vulnerable to command injection resulting in code execution as Node.js user

Affected products

Published 2017-11-17. Last modified 2026-06-17.