Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Pedroetb

#25698of 53,630
9.8Total CVSS
Vulnerabilities · 1
PT-2023-11383
9.8
2023-12-19
Pedroetb · Tts-Api · CVE-2019-25158
**Name of the Vulnerable Software and Affected Versions** pedroetb tts-api versions up to 2.1.4 **Description** A critical vulnerability has been found in the pedroetb tts-api, affecting the `onSpeechDone` function of the file app.js. This issue leads to os command injection. **Recommendations** For pedroetb tts-api versions up to 2.1.4, upgrade to version 2.2.0 to address this issue. As a temporary workaround, consider disabling the `onSpeechDone` function until a patch is available.