Vulnerabilities > Node Wixtoolset Project

DATE CVE VULNERABILITY TITLE RISK
2018-06-04 CVE-2016-10663 Missing Encryption of Sensitive Data vulnerability in Node-Wixtoolset Project Node-Wixtoolset 1.0.0
wixtoolset is a Node module wrapper around the wixtoolset binaries wixtoolset downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks.
network
high complexity
node-wixtoolset-project CWE-311
8.1