CVE-2021-29446

Information Exposure Through Discrepancy in npm/jose

Identifiers

CVE-2021-29446, GHSA-rvcw-f68w-8h8h

Package Slug

npm/jose

Vulnerability

Information Exposure Through Discrepancy

Description

jose-node-cjs-runtime is an npm package which provides a number of cryptographic functions.

Affected Versions

All versions before 3.11.4

Solution

Upgrade to version 3.11.4 or above.

Last Modified

2021-05-03

source