@disclose_io Community Forum
Universal “netmask” npm package, used by 270,000+ projects, vulnerable to octal input data: server-side request forgery, remote file inclusion, local file inclusion, and more (CVE-2021-28918)
Write-ups and Disclosures
sickcodes
March 29, 2021, 8:33am
1
Huge effort by the team!
1 Like