localstack@2.2.1.dev20230915092530 vulnerabilities

LocalStack - A fully functional local Cloud stack

  • latest version

    4.0.4.dev1

  • latest non vulnerable version

  • first published

    8 years ago

  • latest version published

    16 days ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the localstack package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • H
    Improper Certificate Validation

    localstack is an An easy-to-use test/mocking framework for developing Cloud applications

    Affected versions of this package are vulnerable to Improper Certificate Validation in cluster.py file. An attacker can eavesdrop on communications between the host and server by performing a man-in-the-middle attack.

    How to fix Improper Certificate Validation?

    Upgrade localstack to version 3.0.0 or higher.

    [0,3.0.0)