npm package
aedes
pkg:npm/aedes
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2020-13410 | — | < 0.42.1 | 0.42.1 | Aug 26, 2020 | An issue was discovered in MoscaJS Aedes 0.42.0. lib/write.js does not properly consider exceptions during the writing of an invalid packet to a stream. | ||
| CVE-2018-3778 | Med | 5.3 | < 0.35.1 | 0.35.1 | Aug 8, 2018 | Improper authorization in aedes version <0.35.0 will publish a LWT in a channel when a client is not authorized. |
- CVE-2020-13410Aug 26, 2020affected < 0.42.1fixed 0.42.1
An issue was discovered in MoscaJS Aedes 0.42.0. lib/write.js does not properly consider exceptions during the writing of an invalid packet to a stream.
- affected < 0.35.1fixed 0.35.1
Improper authorization in aedes version <0.35.0 will publish a LWT in a channel when a client is not authorized.