npm Alert
2451Warning Date
Severity Level
Warning Number
Target Sector
21 August, 2022
● Critical
2022-5141
All
npm has released security updates to address multiple vulnerabilities in the following products:
- react-editable-json-tree
- < 2.2.2
- openzeppelin/contracts
- >= 4.1.0, < 4.7.3
- openzeppelin/contracts-upgradeable
- >= 4.1.0, < 4.7.3
An attacker could exploit this vulnerability by bypassing security restrictions.
The CERT team encourages users to review npm security advisory and apply the necessary update: