babel@2.1.1 vulnerabilities

Internationalization utilities

  • latest version

    2.17.0

  • latest non vulnerable version

  • first published

    13 years ago

  • latest version published

    1 months ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the babel package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    Directory Traversal

    Babel is an Internationalization utilities

    Affected versions of this package are vulnerable to Directory Traversal. It allows an attacker to load arbitrary locale files on a disk and execute arbitrary code.

    Note: CVE-2021-20095 is a duplicate of CVE-2021-42771.

    How to fix Directory Traversal?

    Upgrade Babel to version 2.9.1 or higher.

    [,2.9.1)