org.webjars.npm:thenify@3.1.0 vulnerabilities
-
latest version
3.3.1
-
latest non vulnerable version
-
first published
9 years ago
-
latest version published
4 years ago
-
licenses detected
- [3.1.0,)
-
package manager
Direct Vulnerabilities
Known vulnerabilities in the org.webjars.npm:thenify package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.Vulnerability | Vulnerable Version |
---|---|
org.webjars.npm:thenify is a Promisify a callback-based function using any-promise. Affected versions of this package are vulnerable to Arbitrary Code Execution. The PoC
How to fix Arbitrary Code Execution? Upgrade |
[0,3.3.1)
|