Package impact
npm / xmlhttprequest-ssl
| CVE | Severity | CVSS | Risk | Flags | OS | Vendor | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-31597 | unknown | — | — | 5y ago | Improper Certificate Validation in xmlhttprequest-ssl | |||
| CVE-2020-28502 | unknown | — | — | 5y ago | This affects the package xmlhttprequest before 1.7.0; all versions of package xmlhttprequest-ssl. Provided requests are sent synchronously (async=False on xhr.open), malicious user input flowing into… |