The npm-test-sqlite3-trunk module provides asynchronous, non-blocking SQLite3 bindings. npm-test-sqlite3-trunk downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the requested resources with an attacker controlled copy if the attacker is on the network or positioned in between the user and the remote server.
security update
Рыбацкий нескладной нож ОСЕТР (5373). Главным отличием охотничьего ножа является твердость стали. Можно сказать, что этот нож — самый универсальный инструмент, который выполняет много поставленных перед собой задач, в том числе и функции холодного оружия. Но главной функцией является, конечно же, разделка рыбы. Опытный охотник никогда не отправится на охоту без охотничьего ножа, который станет […]
Node.js: All versions prior to Node.js 6.15.0: Debugger port 5858 listens on any interface by default: When the debugger is enabled with `node --debug` or `node debug`, it listens to port 5858 on all interfaces by default. This may allow remote computers to attach to the debug port and evaluate arbitrary JavaScript. The default interface is now localhost. It has always been possible to start the debugger on a specific interface, such as `node --debug=localhost`. The debugger was removed in Node.js 8 and…