Skip to content
GitLab
Explore
Sign in
Register
Commits on Source (3)
mark nodejs CVE as ignored
· 77aa8a2b
Thorsten Alteholz
authored
Apr 22, 2019
77aa8a2b
mark nodejs CVE as ignored
· 4daebe35
Thorsten Alteholz
authored
Apr 22, 2019
4daebe35
mark nodejs CVE as ignored
· 8684c2e3
Thorsten Alteholz
authored
Apr 22, 2019
8684c2e3
Show whitespace changes
Inline
Side-by-side
data/CVE/list
View file @
8684c2e3
...
...
@@ -87334,6 +87334,7 @@ CVE-2017-16130 (exxxxxxxxxxx is an Http eX Frame Google Style JavaScript Guide.
CVE-2017-16129 (The HTTP client module superagent is vulnerable to ZIP bomb attacks. I ...)
- node-superagent 0.20.0+dfsg-2
[stretch] - node-superagent <ignored> (Nodejs in stretch not covered by security support)
[jessie] - node-superagent <ignored> (Nodejs in jessie not covered by security support)
NOTE: https://github.com/visionmedia/superagent/issues/1259
NOTE: https://nodesecurity.io/advisories/479
CVE-2017-16128 (The module npm-script-demo opened a connection to a command and contro ...)
...
...
@@ -87552,6 +87553,7 @@ CVE-2017-16027
CVE-2017-16026 (Request is an http client. If a request is made using ```multipart```, ...)
- node-request 2.88.1-1 (bug #901708)
[stretch] - node-request <ignored> (Nodejs in stretch not covered by security support)
[jessie] - node-request <ignored> (Nodejs in jessie not covered by security support)
NOTE: https://github.com/request/request/issues/1904
NOTE: https://nodesecurity.io/advisories/309
NOTE: https://github.com/request/request/pull/2018
...
...
@@ -87949,6 +87951,7 @@ CVE-2016-10543 (call is an HTTP router that is primarily used by the hapi framew
CVE-2016-10542 (ws is a "simple to use, blazing fast and thoroughly tested websocket c ...)
- node-ws 1.1.0+ds1.e6ddaae4-5 (bug #927671)
[stretch] - node-ws <ignored> (Nodejs in stretch not covered by security support)
[jessie] - node-ws <ignored> (Nodejs in jessie not covered by security support)
NOTE: https://nodesecurity.io/advisories/120
NOTE: https://github.com/nodejs/node/issues/7388
CVE-2016-10541 (The npm module "shell-quote" 1.6.0 and earlier cannot correctly escape ...)