CVE-2016-10578
29.05.2018, 20:29
unicode loads unicode data downloaded from unicode.org into nodejs. Unicode before 9.0.0 downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks.Enginsight
| Vendor | Product | Version |
|---|---|---|
| unicode_project | unicode | 𝑥 < 9.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration