VYPR
Vendor

Semantic Release Project

Products
1
CVEs
2
Across products
2
Status
Private

Products

1

Recent CVEs

2
  • CVE-2020-26226HigNov 18, 2020
    risk 0.46cvss 8.1epss 0.01

    In the npm package semantic-release before version 17.2.3, secrets that would normally be masked by `semantic-release` can be accidentally disclosed if they contain characters that become encoded when included in a URL. Secrets that do not contain characters that become encoded…

  • CVE-2022-31051MedJun 9, 2022
    risk 0.22cvss 4.4epss 0.02

    semantic-release is an open source npm package for automated version management and package publishing. In affected versions secrets that would normally be masked by semantic-release can be accidentally disclosed if they contain characters that are excluded from uri encoding by…