Skip to content
Commits on Source (3)
......@@ -87334,6 +87334,7 @@ CVE-2017-16130 (exxxxxxxxxxx is an Http eX Frame Google Style JavaScript Guide.
CVE-2017-16129 (The HTTP client module superagent is vulnerable to ZIP bomb attacks. I ...)
- node-superagent 0.20.0+dfsg-2
[stretch] - node-superagent <ignored> (Nodejs in stretch not covered by security support)
[jessie] - node-superagent <ignored> (Nodejs in jessie not covered by security support)
NOTE: https://github.com/visionmedia/superagent/issues/1259
NOTE: https://nodesecurity.io/advisories/479
CVE-2017-16128 (The module npm-script-demo opened a connection to a command and contro ...)
......@@ -87552,6 +87553,7 @@ CVE-2017-16027
CVE-2017-16026 (Request is an http client. If a request is made using ```multipart```, ...)
- node-request 2.88.1-1 (bug #901708)
[stretch] - node-request <ignored> (Nodejs in stretch not covered by security support)
[jessie] - node-request <ignored> (Nodejs in jessie not covered by security support)
NOTE: https://github.com/request/request/issues/1904
NOTE: https://nodesecurity.io/advisories/309
NOTE: https://github.com/request/request/pull/2018
......@@ -87949,6 +87951,7 @@ CVE-2016-10543 (call is an HTTP router that is primarily used by the hapi framew
CVE-2016-10542 (ws is a "simple to use, blazing fast and thoroughly tested websocket c ...)
- node-ws 1.1.0+ds1.e6ddaae4-5 (bug #927671)
[stretch] - node-ws <ignored> (Nodejs in stretch not covered by security support)
[jessie] - node-ws <ignored> (Nodejs in jessie not covered by security support)
NOTE: https://nodesecurity.io/advisories/120
NOTE: https://github.com/nodejs/node/issues/7388
CVE-2016-10541 (The npm module "shell-quote" 1.6.0 and earlier cannot correctly escape ...)