CVE-2021-23406
24.08.2021, 08:15
This affects the package pac-resolver before 5.0.0. This can occur when used with untrusted input, due to unsafe PAC file handling. **NOTE:** The fix for this vulnerability is applied in the node-degenerator library, a dependency written by the same maintainer.Enginsight
Vendor | Product | Version |
---|---|---|
pac-resolver_project | pac-resolver | 𝑥 < 5.0.0 |
𝑥
= Vulnerable software versions
References