jss@1.0.3

Vulnerabilities

1 via 1 paths

Dependencies

10

Source

npm

Find, fix and prevent vulnerabilities in your code.

Severity
  • 1
Status
  • 1
  • 0
  • 0

medium severity

Uninitialized Memory Exposure

  • Vulnerable module: atob
  • Introduced through: css@2.1.0

Detailed paths

  • Introduced through: jss@1.0.3 css@2.1.0 source-map-resolve@0.3.1 atob@1.1.3
    Remediation: Upgrade to jss@1.0.5.

Overview

atob is a package that Uses Buffer to emulate the exact functionality of the browser's atob.

Affected versions of this package are vulnerable to Uninitialized Memory Exposure. It allocates uninitialized Buffers when a number is passed in user provided fields.

Remediation

Upgrade atob to version 2.1.0 or higher.

References