consoleme@1.1.6 vulnerabilities
A central control plane for AWS permissions and access
-
latest version
1.4.0
-
latest non vulnerable version
-
first published
4 years ago
-
latest version published
6 months ago
-
licenses detected
- [0,)
Direct Vulnerabilities
Known vulnerabilities in the consoleme package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.Vulnerability | Vulnerable Version |
---|---|
consoleme is an A central control plane for AWS permissions and access Affected versions of this package are vulnerable to Improper Neutralization of Special Elements used in a Command ('Command Injection') via the Note: Deployments of ConsoleMe that allow templated resources are impacted and urged to patch immediately. Deployments that do not permit templated resources are not affected. How to fix Improper Neutralization of Special Elements used in a Command ('Command Injection')? Upgrade |
[,1.4.0)
|
consoleme is an A central control plane for AWS permissions and access Affected versions of this package are vulnerable to Information Exposure via a Python format string issue leading to the possibility of exfiltration of AWS credentials. How to fix Information Exposure? Upgrade |
[,1.2.2)
|