Логотип exploitDog
bind:"CVE-2020-15095" OR bind:"CVE-2020-8116" OR bind:"CVE-2020-8201" OR bind:"CVE-2020-8252"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2020-15095" OR bind:"CVE-2020-8116" OR bind:"CVE-2020-8201" OR bind:"CVE-2020-8252"

Количество 35

Количество 35

rocky логотип

RLSA-2020:4272

больше 4 лет назад

Moderate: nodejs:12 security and bug fix update

EPSS: Низкий
oracle-oval логотип

ELSA-2020-4272

больше 4 лет назад

ELSA-2020-4272: nodejs:12 security and bug fix update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1616-1

больше 4 лет назад

Security update for nodejs12

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2813-1

больше 4 лет назад

Security update for nodejs12

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2812-1

больше 4 лет назад

Security update for nodejs12

EPSS: Низкий
rocky логотип

RLSA-2021:0548

больше 4 лет назад

Moderate: nodejs:10 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2021-0548

больше 4 лет назад

ELSA-2021-0548: nodejs:10 security update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1660-1

больше 4 лет назад

Security update for nodejs10

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2829-1

больше 4 лет назад

Security update for nodejs10

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2823-1

больше 4 лет назад

Security update for nodejs10

EPSS: Низкий
ubuntu логотип

CVE-2020-15095

почти 5 лет назад

Versions of the npm CLI prior to 6.14.6 are vulnerable to an information exposure vulnerability through log files. The CLI supports URLs like "<protocol>://[<user>[:<password>]@]<hostname>[:<port>][:][/]<path>". The password value is not redacted and is printed to stdout and also to any generated log files.

CVSS3: 4.4
EPSS: Низкий
redhat логотип

CVE-2020-15095

почти 5 лет назад

Versions of the npm CLI prior to 6.14.6 are vulnerable to an information exposure vulnerability through log files. The CLI supports URLs like "<protocol>://[<user>[:<password>]@]<hostname>[:<port>][:][/]<path>". The password value is not redacted and is printed to stdout and also to any generated log files.

CVSS3: 4.4
EPSS: Низкий
nvd логотип

CVE-2020-15095

почти 5 лет назад

Versions of the npm CLI prior to 6.14.6 are vulnerable to an information exposure vulnerability through log files. The CLI supports URLs like "<protocol>://[<user>[:<password>]@]<hostname>[:<port>][:][/]<path>". The password value is not redacted and is printed to stdout and also to any generated log files.

CVSS3: 4.4
EPSS: Низкий
debian логотип

CVE-2020-15095

почти 5 лет назад

Versions of the npm CLI prior to 6.14.6 are vulnerable to an informati ...

CVSS3: 4.4
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1644-1

больше 4 лет назад

Security update for nodejs8

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:2870-1

больше 4 лет назад

Security update for nodejs8

EPSS: Низкий
github логотип

GHSA-93f3-23rq-pjfp

почти 5 лет назад

npm CLI exposing sensitive information through logs

CVSS3: 4.4
EPSS: Низкий
ubuntu логотип

CVE-2020-8116

больше 5 лет назад

Prototype pollution vulnerability in dot-prop npm package versions before 4.2.1 and versions 5.x before 5.1.1 allows an attacker to add arbitrary properties to JavaScript language constructs such as objects.

CVSS3: 7.3
EPSS: Низкий
redhat логотип

CVE-2020-8116

больше 5 лет назад

Prototype pollution vulnerability in dot-prop npm package versions before 4.2.1 and versions 5.x before 5.1.1 allows an attacker to add arbitrary properties to JavaScript language constructs such as objects.

CVSS3: 7.3
EPSS: Низкий
nvd логотип

CVE-2020-8116

больше 5 лет назад

Prototype pollution vulnerability in dot-prop npm package versions before 4.2.1 and versions 5.x before 5.1.1 allows an attacker to add arbitrary properties to JavaScript language constructs such as objects.

CVSS3: 7.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2020:4272

Moderate: nodejs:12 security and bug fix update

больше 4 лет назад
oracle-oval логотип
ELSA-2020-4272

ELSA-2020-4272: nodejs:12 security and bug fix update (MODERATE)

больше 4 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1616-1

Security update for nodejs12

больше 4 лет назад
suse-cvrf логотип
SUSE-SU-2020:2813-1

Security update for nodejs12

больше 4 лет назад
suse-cvrf логотип
SUSE-SU-2020:2812-1

Security update for nodejs12

больше 4 лет назад
rocky логотип
RLSA-2021:0548

Moderate: nodejs:10 security update

больше 4 лет назад
oracle-oval логотип
ELSA-2021-0548

ELSA-2021-0548: nodejs:10 security update (MODERATE)

больше 4 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1660-1

Security update for nodejs10

больше 4 лет назад
suse-cvrf логотип
SUSE-SU-2020:2829-1

Security update for nodejs10

больше 4 лет назад
suse-cvrf логотип
SUSE-SU-2020:2823-1

Security update for nodejs10

больше 4 лет назад
ubuntu логотип
CVE-2020-15095

Versions of the npm CLI prior to 6.14.6 are vulnerable to an information exposure vulnerability through log files. The CLI supports URLs like "<protocol>://[<user>[:<password>]@]<hostname>[:<port>][:][/]<path>". The password value is not redacted and is printed to stdout and also to any generated log files.

CVSS3: 4.4
0%
Низкий
почти 5 лет назад
redhat логотип
CVE-2020-15095

Versions of the npm CLI prior to 6.14.6 are vulnerable to an information exposure vulnerability through log files. The CLI supports URLs like "<protocol>://[<user>[:<password>]@]<hostname>[:<port>][:][/]<path>". The password value is not redacted and is printed to stdout and also to any generated log files.

CVSS3: 4.4
0%
Низкий
почти 5 лет назад
nvd логотип
CVE-2020-15095

Versions of the npm CLI prior to 6.14.6 are vulnerable to an information exposure vulnerability through log files. The CLI supports URLs like "<protocol>://[<user>[:<password>]@]<hostname>[:<port>][:][/]<path>". The password value is not redacted and is printed to stdout and also to any generated log files.

CVSS3: 4.4
0%
Низкий
почти 5 лет назад
debian логотип
CVE-2020-15095

Versions of the npm CLI prior to 6.14.6 are vulnerable to an informati ...

CVSS3: 4.4
0%
Низкий
почти 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1644-1

Security update for nodejs8

0%
Низкий
больше 4 лет назад
suse-cvrf логотип
SUSE-SU-2020:2870-1

Security update for nodejs8

0%
Низкий
больше 4 лет назад
github логотип
GHSA-93f3-23rq-pjfp

npm CLI exposing sensitive information through logs

CVSS3: 4.4
0%
Низкий
почти 5 лет назад
ubuntu логотип
CVE-2020-8116

Prototype pollution vulnerability in dot-prop npm package versions before 4.2.1 and versions 5.x before 5.1.1 allows an attacker to add arbitrary properties to JavaScript language constructs such as objects.

CVSS3: 7.3
0%
Низкий
больше 5 лет назад
redhat логотип
CVE-2020-8116

Prototype pollution vulnerability in dot-prop npm package versions before 4.2.1 and versions 5.x before 5.1.1 allows an attacker to add arbitrary properties to JavaScript language constructs such as objects.

CVSS3: 7.3
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-8116

Prototype pollution vulnerability in dot-prop npm package versions before 4.2.1 and versions 5.x before 5.1.1 allows an attacker to add arbitrary properties to JavaScript language constructs such as objects.

CVSS3: 7.3
0%
Низкий
больше 5 лет назад

Уязвимостей на страницу