vulnerability
Ubuntu: USN-4785-1 (CVE-2016-3956): npm vulnerability
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
5 | (AV:N/AC:L/Au:N/C:P/I:N/A:N) | Jul 2, 2016 | Mar 22, 2023 | Apr 14, 2025 |
Severity
5
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Published
Jul 2, 2016
Added
Mar 22, 2023
Modified
Apr 14, 2025
Description
It was discovered that the npm command-line interface mishandled certain
sensitive information. An attacker could use this vulnerability to collect
authentication information that could be used to impersonate other users.
Solution
ubuntu-pro-upgrade-npm

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.