Nixpkgs Security Tracker

Login with GitHub

Suggestions search

With package: python312Packages.streaming-form-data

Found 1 matching suggestions

created 4 months, 3 weeks ago
Usage of unsafe random function in form-data for choosing boundary

Use of Insufficiently Random Values vulnerability in form-data allows HTTP Parameter Pollution (HPP). This vulnerability is associated with program files lib/form_data.Js. This issue affects form-data: < 2.5.4, 3.0.0 - 3.0.3, 4.0.0 - 4.0.3.

Affected products

form-data
  • ==4.0.0 - 4.0.3
  • ==3.0.0 - 3.0.3
  • ==< 2.5.4

Matching in nixpkgs

Package maintainers