Severity
6.1
Medium severity
Details
- CVSS score
- 6.1
- CVSS vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
- CWE ID
Overview
About vulnerability
node-fetch is vulnerable to Exposure of Sensitive Information to an Unauthorized ActorDetails
- Affected product:
- Acorn , Bootstrap , Next.js , Node.js , React , amp-toolbox , boxen , check-updates , cross-fetch , cross-spawn , execa , fbjs , isomorphic-fetch , jpm , loopback , loopback-connector , loopback-connector-remote , loopback-datasource-juggler , loopback-phase , opencollective-cli , os-locale , prop-types , semantic-release , semver , strong-globalize , strong-remoting , term-size , update-notifier , webpack , yargs
- Affected packages:
- node-fetch @ 2.6.1 (+67 more)