CVE-2021-29445

Information Exposure Through Discrepancy in npm/jose

Identifiers

CVE-2021-29445, GHSA-4v4g-726h-xvfv

Package Slug

npm/jose

Vulnerability

Information Exposure Through Discrepancy

Description

jose-node-esm-runtime is an npm package which provides a number of cryptographic functions.

Affected Versions

All versions before 3.11.4

Solution

Upgrade to version 3.11.4 or above.

Last Modified

2021-05-03

source