npm Updates
1838Warning Date
Severity Level
Warning Number
Target Sector
25 November, 2021
● Medium
2021-3941
All
Description:
npm has released security updates to address multiple vulnerabilities in the following product:
- aws-iot-device-sdk-v2
- < 1.5.1
- < 1.6.0
- < 1.5.3
Threats:
Attackers could exploit these vulnerabilities by executing arbitrary code.
Best practice and Recommendations:
The CERT team encourages users to review npm security advisory and apply the necessary updates: