This site is an independent open-source project and is not affiliated with, endorsed by, or sponsored by npm, Inc. or GitHub, Inc. The name “npm” is a registered trademark of npm, Inc., used here solely to describe compatibility and reference publicly available npm package data.
Version Details and Security Vulnerabilities
📦
parse-git-config
2.0.1
Comparision Betweeen 2.0.1 and 2.0.0
Identify the differences between the current version of the package and the previous one.
Version
Dependencies
3
3
Dev Dependencies
3
0
Peer Dependencies
3
0
Distributed Files
4
4
Unpacked Size
15 KB
14.86 KB
Security Vulnerabilities
Security Details
Comprehensive list of direct or transitive vulnerabilities for version 2.0.1 of the package parse-git-config.
All Security Vulnerabilities
All the vulnerabilities related to the version 2.0.1 of the package
Summary:
Prototype Pollution Vulnerability in parse-git-config
Details:
An issue in parse-git-config v.3.0.0 allows an attacker to obtain sensitive information via the expandKeys function.