2 rules
node-fetch forwards secure headers to untrusted sites
node-fetch forwards secure headers such as authorization, www-authenticate, cookie, & cookie2 when redirecting to a untrusted site.
LLM02 · Insecure OutputOWASP Web
Get guardrail →299 threats tracked across 7 launch stacks — sourced from NVD, GHSA, CISA KEV, OSV, npm Audit, and EPSS.
node-fetch forwards secure headers such as authorization, www-authenticate, cookie, & cookie2 when redirecting to a untrusted site.
axios before v0.21.2 is vulnerable to Inefficient Regular Expression Complexity.
lodash versions prior to 4.17.21 are vulnerable to Command Injection via the template function.
Showing 41–43 of 43 threats