vulnerability

Ubuntu: USN-6016-1 (CVE-2020-7677): thenify vulnerability

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
2022-07-25
Added
2023-04-17
Modified
2025-01-28

Description

This affects the package thenify before 3.3.1. The name argument provided to the package can be controlled by users without any sanitization, and this is provided to the eval function without any sanitization.

Solution

ubuntu-upgrade-node-thenify
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.