VYPR

npm package

@feathersjs/socketio

pkg:npm/%40feathersjs/socketio

Vulnerabilities (1)

  • CVE-2023-37899Jul 19, 2023
    affected < 4.5.18fixed 4.5.18

    Feathersjs is a framework for creating web APIs and real-time applications with TypeScript or JavaScript. Feathers socket handler did not catch invalid string conversion errors like `const message = ${{ toString: '' }}` which would cause the NodeJS process to crash when sending a