CVE-2025-57285 | codeceptjs 3.7.3 lib/utils.js emptyFolder directoryPath command injection
A vulnerability classified as critical has been found in codeceptjs 3.7.3. This affects the function emptyFolder in the library lib/utils.js. The manipulation of the argument directoryPath leads to command injection.
This vulnerability is referenced as CVE-2025-57285. The attack needs to be initiated within the local network. No exploit is available.