VYPR

npm package

sharp

pkg:npm/sharp

Vulnerabilities (1)

  • CVE-2022-29256May 25, 2022
    affected < 0.30.5fixed 0.30.5

    sharp is an application for Node.js image processing. Prior to version 0.30.5, there is a possible vulnerability in logic that is run only at `npm install` time when installing versions of `sharp` prior to the latest v0.30.5. If an attacker has the ability to set the value of the