mongo-express@1.0.0 vulnerabilities
Web-based admin interface for MongoDB
-
latest version
1.0.2
-
first published
12 years ago
-
latest version published
a year ago
-
licenses detected
- >=0
Direct Vulnerabilities
Known vulnerabilities in the mongo-express package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.Vulnerability | Vulnerable Version |
---|---|
mongo-express is a web-based MongoDB admin interface written with Node.js, Express and Bootstrap3 Affected versions of this package are vulnerable to Cross-Site Request Forgery (CSRF) due to insufficient protection on the How to fix Cross-Site Request Forgery (CSRF)? A fix was pushed into the |
*
|
mongo-express is a web-based MongoDB admin interface written with Node.js, Express and Bootstrap3 Affected versions of this package are vulnerable to Denial of Service (DoS) when exporting an empty collection as CSV, due to an unhandled exception, leading to a crash. How to fix Denial of Service (DoS)? There is no fixed version for |
*
|