DirectorySecurity Advisories
Sign In
Security Advisories

CGA-hwrj-cwxw-pr4r

Published

Last updated

https://images.chainguard.dev/security/CGA-hwrj-cwxw-pr4r
Package

jitsucom-jitsu

Latest Update
Not affected
Aliases
  • CVE-2018-3739
  • GHSA-8g7p-74h8-hg48

Severity

9.1

Critical

CVSS V3

Summary

Denial of Service in https-proxy-agent

Description

Versions of https-proxy-agent before 2.2.0 are vulnerable to denial of service. This is due to unsanitized options (proxy.auth) being passed to Buffer().

Recommendation

Update to version 2.2.0 or later.

References

Updates


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images