got@4.2.0 vulnerabilities

Human-friendly and powerful HTTP request library for Node.js

  • latest version

    14.4.5

  • latest non vulnerable version

  • first published

    10 years ago

  • latest version published

    18 days ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the got package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    Open Redirect

    Affected versions of this package are vulnerable to Open Redirect due to missing verification of requested URLs. It allowed a victim to be redirected to a UNIX socket.

    How to fix Open Redirect?

    Upgrade got to version 11.8.5, 12.1.0 or higher.

    <11.8.5>=12.0.0 <12.1.0