CVE-2016-10578
29.05.2018, 20:29
unicode loads unicode data downloaded from unicode.org into nodejs. Unicode before 9.0.0 downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks.Enginsight
Vendor | Product | Version |
---|---|---|
unicode_project | unicode | 𝑥 < 9.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration