yubikey-manager@5.5.1

Library and CLI for managing your YubiKey configuration.

  • latest version

    5.9.1

  • latest non vulnerable version

  • first published

    9 years ago

  • latest version published

    18 days ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the yubikey-manager package. This does not include vulnerabilities belonging to this package’s dependencies.

    Fix vulnerabilities automatically

    Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

    Fix for free
    VulnerabilityVulnerable Version
    • L
    Untrusted Search Path

    yubikey-manager is a Library and CLI for managing your YubiKey configuration.

    Affected versions of this package are vulnerable to Untrusted Search Path due to the unintended search order for dynamic link libraries. An attacker can execute arbitrary code by placing a malicious DLL in a directory that is searched before the intended library.

    How to fix Untrusted Search Path?

    Upgrade yubikey-manager to version 5.9.1 or higher.

    [,5.9.1)