npm Update
2713Warning Date
Severity Level
Warning Number
Target Sector
28 July, 2020
● High
2020-1548
All
Description:
npm released security update to address a vulnerability in the following product:
- MIT Lifelong Kindergarten Scratch scratch-vm
- prior to 0.2.0-prerelease
Threats:
An attacker could exploit this vulnerability by executing arbitrary code remotely.
Best practice and Recommendations:
The CERT team encourages users to review npm security advisory and apply the necessary updates: