This site is an independent open-source project and is not affiliated with, endorsed by, or sponsored by npm, Inc. or GitHub, Inc. The name “npm” is a registered trademark of npm, Inc., used here solely to describe compatibility and reference publicly available npm package data.
Version Details and Security Vulnerabilities
📦
locutus
2.0.13
Comparision Betweeen 2.0.13 and 2.0.12
Identify the differences between the current version of the package and the previous one.
Version
Dependencies
1
1
Dev Dependencies
32
0
Peer Dependencies
32
0
Distributed Files
743
743
Unpacked Size
2.04 MB
2.03 MB
Security Vulnerabilities
Security Details
Comprehensive list of direct or transitive vulnerabilities for version 2.0.13 of the package locutus.
All Security Vulnerabilities
All the vulnerabilities related to the version 2.0.13 of the package
Summary:
Uncontrolled Resource Consumption in locutus
Details:
The package locutus before 2.0.15 is vulnerable to Regular Expression Denial of Service (ReDoS) via the gopher_parsedir function.