WS-2018-0148 - Low Severity Vulnerability
Vulnerable Library - utile-0.3.0.tgz
A drop-in replacement for `util` with some additional advantageous functions
path: /tmp/git/bit/node_modules/utile/package.json
Library home page: http://registry.npmjs.org/utile/-/utile-0.3.0.tgz
Dependency Hierarchy:
- prompt-1.0.0.tgz (Root Library)
- ❌ utile-0.3.0.tgz (Vulnerable Library)
Found in HEAD commit: f7a7c8995c9334f26fb0a7b36b15a2c09421aa02
Vulnerability Details
utile allocates uninitialized Buffers when number is passed in input.
Before version 0.3.0
Publish Date: 2018-07-16
URL: WS-2018-0148
CVSS 2 Score Details (1.8)
Base Score Metrics not available
Step up your Open Source Security Game with WhiteSource here
WS-2018-0148 - Low Severity Vulnerability
A drop-in replacement for `util` with some additional advantageous functions
path: /tmp/git/bit/node_modules/utile/package.json
Library home page: http://registry.npmjs.org/utile/-/utile-0.3.0.tgz
Dependency Hierarchy:
Found in HEAD commit: f7a7c8995c9334f26fb0a7b36b15a2c09421aa02
utileallocates uninitialized Buffers when number is passed in input.Before version 0.3.0
Publish Date: 2018-07-16
URL: WS-2018-0148
Base Score Metrics not available
Step up your Open Source Security Game with WhiteSource here