rpc-websocket@0.7.6 vulnerabilities

RPC WebSocket is a wrapper for standard websockets that adds support for message types, RPC, and for before/after send/receive events. It is an alternative to ajax, socket.io, and JSON-RPC.

  • latest version

    0.7.6

  • latest non vulnerable version

  • first published

    10 years ago

  • latest version published

    10 years ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the rpc-websocket package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • C
    Malicious Package

    rpc-websocket is a wrapper for standard websockets that adds support for message types, RPC, and for before/after send/receive events.

    Affected versions of this package open a backdoor to a remote server and execute arbitrary commands.

    How to fix Malicious Package?

    Avoid using version 0.7.9, 0.7.10, 0.7.11 of rpc-websocket.

    >=0.7.6