Open-Source Security Intelligence

Know every vulnerability
before it knows you.

DevGuard continuously monitors your dependencies and alerts you when CVEs like this one affect your stack — with real-time threat intelligence built for developers.

Search

WID-SEC-W-2024-1076

Published Jan 24, 2022·Last modified Oct 9, 2024
Description
Produktbeschreibung

npm ist ein Paketmanager für die JavaScript-Laufzeitumgebung Node.js.

Angriff

Ein lokaler Angreifer kann eine Schwachstelle in npm ausnutzen, um Sicherheitsvorkehrungen zu umgehen.

Betroffene Betriebssysteme
  • Linux
  • UNIX
Upload your SBOM

Upload your own SBOM in CycloneDX 1.6 or higher (JSON) directly here to check your vulnerabilities.

Scan your project

Continuously monitor your dependencies and get alerted when vulnerabilities like this one affect your stack.

Checkout DevGuard