"-Synchronized-Data."

This commit is contained in:
CVE Team 2020-10-02 11:01:53 +00:00
parent fe8c73b81a
commit 03f721379d
No known key found for this signature in database
GPG Key ID: 5708902F06FEF743

View File

@ -48,8 +48,9 @@
"references": { "references": {
"reference_data": [ "reference_data": [
{ {
"refsource": "CONFIRM", "refsource": "MISC",
"url": "https://snyk.io/vuln/SNYK-JS-SHIBA-596466" "url": "https://snyk.io/vuln/SNYK-JS-SHIBA-596466",
"name": "https://snyk.io/vuln/SNYK-JS-SHIBA-596466"
} }
] ]
}, },
@ -57,7 +58,7 @@
"description_data": [ "description_data": [
{ {
"lang": "eng", "lang": "eng",
"value": "All versions of package shiba are vulnerable to Arbitrary Code Execution due to the default usage of the function load() of the package js-yaml instead of its secure replacement , safeLoad().\n" "value": "All versions of package shiba are vulnerable to Arbitrary Code Execution due to the default usage of the function load() of the package js-yaml instead of its secure replacement , safeLoad()."
} }
] ]
}, },