npm Alert
2718Warning Date
Severity Level
Warning Number
Target Sector
9 March, 2022
● High
2022-4495
All
npm has released security updates to address several vulnerabilities in the following products:
- genieacs (npm)
- < 1.2.8
- urijs
- < 1.19.10
Attacker could exploit these vulnerabilities by doing the following:
- Excuate arbitrary code
The CERT team encourages users to review npm security advisory and apply the necessary updates: