[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#949121: buster-pu: package node-kind-of/6.0.2+dfsg-1+deb10u1



Control: tags -1 + confirmed

On Fri, 2020-01-17 at 06:25 +0100, Xavier Guimard wrote:
> node-kind-of is vulnerable to CVE-2019-20149: it allows external user
> input to overwrite certain internal attributes via a conflicting
> name.
> 

Please go ahead.

Regards,

Adam


Reply to: