CVE-2019-10783: Isof Project Isof

Critical severity, CVSS 9.8. EPSS: 2.6% chance of exploitation in the next 30 days.

All versions including 0.0.4 of lsof npm module are vulnerable to Command Injection. Every exported method used by the package uses the exec function to parse user input.

Affected products

Published 2020-01-29. Last modified 2026-06-17.