AVG-626 log
| Package | npm |
| Status | Fixed |
| Severity | High |
| Type | access restriction bypass |
| Affected | 5.7.0-1 |
| Fixed | 5.7.1-1 |
| Current | 11.6.3-1 [extra] |
| Ticket | None |
| Created | Thu Feb 22 21:56:47 2018 |
| Issue | Severity | Remote | Type | Description |
|---|---|---|---|---|
| CVE-2018-7408 | High | No | Access restriction bypass | An issue was discovered in an npm 5.7.0 2018-02-21 pre-release (marked as "next: 5.7.0" and therefore automatically installed by an "npm upgrade -g npm"... |