1.0.1
11 months ago
11 months ago
Known vulnerabilities in the dectalk-tts package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
dectalk-tts is an API wrapper for the Dectalk TTS system Affected versions of this package are vulnerable to Channel Accessible by Non-Endpoint ('Man-in-the-Middle') due to the use of unencrypted HTTP for network requests to a third-party API. This allows an attacker to intercept and modify traffic, leading to potential man-in-the-middle (MITM) attacks. How to fix Channel Accessible by Non-Endpoint ('Man-in-the-Middle')? Upgrade | <1.0.1 |