VYPR

npm package

baryton-saxophone

pkg:npm/baryton-saxophone

Vulnerabilities (1)

  • CVE-2016-10573May 29, 2018
    affected < 3.0.1fixed 3.0.1

    baryton-saxophone is a module to install and launch Selenium Server for Mac, Linux and Windows. baryton-saxophone versions below 3.0.1 download binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapp