CVE-2021-29444

Information Exposure Through Discrepancy in npm/jose

Identifiers

CVE-2021-29444, GHSA-94hh-pjjg-rwmr

Package Slug

npm/jose

Vulnerability

Information Exposure Through Discrepancy

Description

jose-browser-runtime is an npm package which provides a number of cryptographic functions.

Affected Versions

All versions before 3.11.4

Solution

Upgrade to version 3.11.4 or above.

Last Modified

2021-05-03

source