We found results for “”
MSC-2023-17109
Date: October 2, 2023
This package has been identified by Mend as containing potential malicious functionality. The severity of the functionality can change depending on where the library is running (user's machine or backend server). The following risks were identified: An application crash is an unexpected termination of a software program, resulting in the program abruptly stopping and ceasing to function correctly. Software bugs, memory issues, resource limitations, conflicts, or malicious actions can cause it. Application crashes disrupt the normal operation, potentially causing data loss and system instability.
Language: JS
Severity Score
Severity Score
Weakness Type (CWE)
Format String Vulnerability
CWE-134CVSS v3.1
Base Score: |
|
---|---|
Attack Vector (AV): | NETWORK |
Attack Complexity (AC): | LOW |
Privileges Required (PR): | NONE |
User Interaction (UI): | NONE |
Scope (S): | UNCHANGED |
Confidentiality (C): | NONE |
Integrity (I): | NONE |
Availability (A): | HIGH |