A vulnerability was found in BeProduct beproduct-org-nestjs-auth up to 0.1.19. It has been declared as critical. This affects an unknown part of the component postinstall. Such manipulation leads to Remote Code Execution.
This vulnerability is traded as CVE-2026-46412. The attack may be launched remotely. There is no exploit available.