VDB
Sign up

package

npm/generator-jhipster

pkg:npm/generator-jhipster

HIGH7.5npm
GHSA-4gpm-r23h-gprw· CVE-2015-20110

generator-jhipster allows a timing attack against validateToken due to a string comparison that stops at the first character

Modified: 11/8/2023

HIGH8.1npm
GHSA-mc84-xr9p-938r

High severity vulnerability that affects generator-jhipster

Modified: 9/15/2021