Vulnerabilities/

Downloads Resources over HTTP in jser-stat

Severity:
Medium

Description

Affected versions of jser-stat insecurely downloads resources over HTTP.

In scenarios where an attacker has a privileged network position, they can modify or read such resources at will.

Recommendation

No fix is available yet. Followings are affected versions:

References

Related Issues

Tags:
npm
jser-stat
Anything's wrong? Let us know Last updated on January 09, 2023