Connect with us

Technology

GitHub tackles severe vulnerabilities in Node.js packages – ZDNet

Bugs impacting tar and @npmcli/arborist were reported through a bug bounty program.

Published

on

Article feature image

GitHub has resolved numerous vulnerabilities in Node.js packages tar and @npmcli/arborist, with the worst allowing file overwrites and arbitrary code execution. 
On Wednesday, GitHub said the company received reports from Robert Chen and Philip Papurt,…

Click here to view the original article.

Continue Reading
Advertisement
Advertisement

Trending