Known vulnerabilities in bin-links

Vendor: isaacs
Software: bin-links
Software CPE: cpe:2.3:a:isaacs:bin-links:*:*:*:*:*:npm:*:*
Total vulnerabilities: 3
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 6.9

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting bin-links bin-links is affected by 3 known vulnerabilities: 3 low Critical High Medium Low

Vulnerabilities (3)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU23921 - UNIX Symbolic Link (Symlink) Following
CWE-61 Low
No
No
1.1.5 03.01.2020 SB2019121219
#VU23920 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CWE-22 Low
No
No
1.1.6 03.01.2020 SB2019121220
#VU23919 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CWE-22 Low
No
No
1.1.5 03.01.2020 SB2019121219