RSS   Vulnerabilities for 'Node-sass'   RSS

2021-01-11
 
CVE-2020-24025

CWE-295
 

 
Certificate validation in node-sass 2.0.0 to 4.14.1 is disabled when requesting binaries even if the user is not specifying an alternative download path.

 

 >>> Vendor: Sass-lang 3 Products
Libsass
Node-sass
Libsaas


Copyright 2024, cxsecurity.com

 

Back to Top