ZoweDevelopers: NPM Vulnerabiity affecting Zowe components APIML, Zowe Desktop, Zowe CLI and Imperative #1364
Joe-Winchester
announced in
Announcements
Replies: 0 comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
See related announcement ZoweUsers: NPM vulnerability affecting Zowe CLI secure credentials store Nov 4th to Nov 5th 2021.
We found additional Zowe components which the above vulnerability affects at development time, during the same time period of Nov 4th - Nov 5th. There was a second hijacked dependency, which contained the same exploit.
Conditions for vulnerability:
Beta Was this translation helpful? Give feedback.
All reactions