Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pw2r-vq6v-hr8c

Опубликовано: 10 фев. 2022
Источник: github
Github: Прошло ревью
CVSS3: 5.9

Описание

Exposure of Sensitive Information to an Unauthorized Actor in follow-redirects

Exposure of Sensitive Information to an Unauthorized Actor in NPM follow-redirects prior to 1.14.8.

Пакеты

Наименование

follow-redirects

npm
Затронутые версииВерсия исправления

< 1.14.8

1.14.8

EPSS

Процентиль: 68%
0.0126
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-200
CWE-212

Связанные уязвимости

CVSS3: 2.6
ubuntu
больше 4 лет назад

Improper Removal of Sensitive Information Before Storage or Transfer in NPM follow-redirects prior to 1.14.8.

CVSS3: 5.9
redhat
больше 4 лет назад

Improper Removal of Sensitive Information Before Storage or Transfer in NPM follow-redirects prior to 1.14.8.

CVSS3: 2.6
nvd
больше 4 лет назад

Improper Removal of Sensitive Information Before Storage or Transfer in NPM follow-redirects prior to 1.14.8.

CVSS3: 2.6
debian
больше 4 лет назад

Improper Removal of Sensitive Information Before Storage or Transfer i ...

EPSS

Процентиль: 68%
0.0126
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-200
CWE-212