sockjs@0.0.4 vulnerabilities
SockJS-node is a server counterpart of SockJS-client a JavaScript library that provides a WebSocket-like object in the browser. SockJS gives you a coherent, cross-browser, Javascript API which creates a low latency, full duplex, cross-domain communication
-
latest version
0.3.24
-
latest non vulnerable version
-
first published
13 years ago
-
latest version published
3 years ago
-
licenses detected
- >=0
Direct Vulnerabilities
Known vulnerabilities in the sockjs package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.Vulnerability | Vulnerable Version |
---|---|
sockjs is a JavaScript library (for browsers) that provides a WebSocket-like object. Affected versions of this package are vulnerable to Denial of Service (DoS). Incorrect handling of PoC by Andrew Snow
How to fix Denial of Service (DoS)? Upgrade |
<0.3.20
|
sockjs is a JavaScript library (for browsers) that provides a WebSocket-like object. Affected versions of this package are vulnerable to Cross-site Scripting (XSS). How to fix Cross-site Scripting (XSS)? Upgrade |
<0.3.0
|