VYPR

npm package

@tomphttp/bare-server-node

pkg:npm/%40tomphttp/bare-server-node

Vulnerabilities (1)

  • CVE-2024-27922Mar 6, 2024
    affected < 2.0.2fixed 2.0.2

    TOMP Bare Server implements the TompHTTP bare server. A vulnerability in versions prior to 2.0.2 relates to insecure handling of HTTP requests by the @tomphttp/bare-server-node package. This flaw potentially exposes the users of the package to manipulation of their web traffic. T