Security Advisory

CVE-2016-10578

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-05-29 20:00:00
Last updated 2024-09-17 01:11:45
Assigner hackerone
CVSS score not scored
State PUBLISHED

Description

unicode loads unicode data downloaded from unicode.org into nodejs. Unicode before 9.0.0 downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks.