in-toto vulnerabilities

A framework to define and secure the integrity of software supply chains

  • latest version

    3.0.0

  • latest non vulnerable version

  • first published

    7 years ago

  • latest version published

    1 years ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the in-toto package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    External Control of System or Configuration Setting

    [,2.0.0)

    Package versions

    30 VERSIONS IN TOTAL
    versionpublisheddirect vulnerabilities
    3.0.014 May, 2024
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    2.3.010 Apr, 2024
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    2.2.011 Jan, 2024
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    2.1.113 Sep, 2023
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    2.1.07 Sep, 2023
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    2.0.010 May, 2023
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    1.4.026 Apr, 2023
    • 0
      C
    • 0
      H
    • 1
      M
    • 0
      L
    1.3.215 Mar, 2023
    • 0
      C
    • 0
      H
    • 1
      M
    • 0
      L
    1.3.11 Feb, 2023
    • 0
      C
    • 0
      H
    • 1
      M
    • 0
      L
    1.3.030 Jan, 2023
    • 0
      C
    • 0
      H
    • 1
      M
    • 0
      L