High severityGHSA Advisory· Published Feb 14, 2020· Updated Aug 4, 2024
CVE-2020-8128
CVE-2020-8128
Description
An unintended require and server-side request forgery vulnerabilities in jsreport version 2.5.0 and earlier allow attackers to execute arbitrary code.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
jsreportnpm | < 2.6.0 | 2.6.0 |
Affected products
2Patches
Vulnerability mechanics
References
3- github.com/advisories/GHSA-5fjj-cfh2-ghc5ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2020-8128ghsaADVISORY
- hackerone.com/reports/660565ghsax_refsource_MISCWEB
News mentions
0No linked articles in our index yet.