node-fetch is vulnerable to Exposure of Sensitive Information to an Unauthorized Actor
References
| Link | Resource |
|---|---|
| https://huntr.dev/bounties/d26ab655-38d6-48b3-be15-f9ad6b6ae6f7 | Exploit Third Party Advisory |
| https://github.com/node-fetch/node-fetch/commit/36e47e8a6406185921e4985dcbeff140d73eaa10 | Patch Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2022-01-16 17:15
Updated : 2022-01-25 20:00
NVD link : CVE-2022-0235
Mitre link : CVE-2022-0235
JSON object : View
Products Affected
node-fetch_project
- node-fetch
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')
