CVE-2013-4116

Published
View on NVD ↗
CVSS v3
N/A
CVSS v2
3.3
LOW
Affected
1
PROJECT

Description

lib/npm.js in Node Packaged Modules (npm) before 1.3.3 allows local users to overwrite arbitrary files via a symlink attack on temporary files with predictable names that are created when unpacking archives.

This repository is moving to: https://github.com/npm/cli
GitHubGitHub
17.6K