Vulnerabilities > Npmjs > NPM > High

DATE CVE VULNERABILITY TITLE RISK
2022-06-13 CVE-2022-29244 Information Exposure vulnerability in multiple products
npm pack ignores root-level .gitignore and .npmignore file exclusion directives when run in a workspace or with a workspace flag (ie.
network
low complexity
npmjs netapp CWE-200
7.5
2019-12-13 CVE-2019-16776 Path Traversal vulnerability in multiple products
Versions of the npm CLI prior to 6.13.3 are vulnerable to an Arbitrary File Write.
network
low complexity
npmjs opensuse oracle fedoraproject redhat CWE-22
8.1