Total vulnerabilities in the database
lib/npm.js in Node Packaged Modules (npm) before 1.3.3 allows local users to overwrite arbitrary files via a symlink attack on temporary files with predictable names that are created when unpacking archives.
Software | From | Fixed in |
---|---|---|
node_packaged_modules_project / node_packaged_modules | - | 1.3.3 |
![]() |
- | 1.3.3 |