Skip to content

Tovy 07/17/22

Critical
trulyWHOOOP published GHSA-j6f8-wh4v-jc37 Jul 18, 2022

Package

index.js (Node.js)

Affected versions

< 0.7.51

Patched versions

0.7.51

Description

Impact

What kind of vulnerability is it? Who is impacted?
This allows people to login to the owner of the instance or anybody they would like. Everybody below version 0.7.51 is impacted

Patches

Has the problem been patched? What versions should users upgrade to?
This problem has been patched in the latest version

For more information

If you have any questions or comments about this advisory:

Severity

Critical

CVE ID

CVE-2022-31164

Weaknesses