npm Updates
2685Warning Date
Severity Level
Warning Number
Target Sector
13 September, 2020
● Medium
2020-1756
All
Description:
npm has released a security updates to address multiple vulnerabilities in the following products:
- lemonldap-ng-handler
- 0.4.0
- 0.5.0
- 0.5.1
- node-fetch
- 0.1.06
- 1.0.06
- 1.0.16
- 1.0.26
- 1.0.36
- 1.0.46
- 1.0.55
- 1.0.65
- 1.1.05
- 1.1.15
- 1.1.25
- 1.2.05
- 1.2.15
- 1.3.05
- 1.3.15
- 1.3.25
- 1.3.35
- 1.4.04
- 1.4.14
- 1.5.04
- 1.5.14
- 1.5.24
- 1.5.34
- 1.6.04
- 1.6.14
- 1.6.24
- 1.6.34
- 1.7.03
- 1.7.13
- 1.7.23
- 1.7.33
- 2.0.03
- 2.1.03
- 2.1.13
- 2.1.2
- 2.2.02
- 2.2.12
- 2.3.02
- 2.4.0
- 2.4.1
- 2.5.0
- 2.6.0
- 3.0.0-beta.1
- 3.0.0-beta.2
- 3.0.0-beta.3
- 3.0.0-beta.4
- 3.0.0-beta.5
- 3.0.0-beta.6
- 3.0.0-beta.7
- 3.0.0-beta.8
Threats:
An attacker could exploit these vulnerabilities by doing the following:
- Bypass filtering system
- Denial of Service (DoS)
Best practice and Recommendations: