Beveiligingsadvies

CVE-2020-7738

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2020-10-02 10:05:13
Laatst bijgewerkt 2024-09-17 02:11:06
Toegewezen door snyk
CVSS-score 8.3
Status PUBLISHED

Beschrijving

All versions of package shiba are vulnerable to Arbitrary Code Execution due to the default usage of the function load() of the package js-yaml instead of its secure replacement , safeLoad().