2.5.0
3 months ago
3 months ago
Known vulnerabilities in the socket.io-client-v2 package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
socket.io-client-v2 is a malicious package.
The attack chain is triggered by package installation via an install hook in the How to fix Malicious Package? Avoid using all malicious instances of the | * |