Lucene search

K
nodejsJoel GriffithNODEJS:824
HistoryApr 19, 2019 - 9:33 p.m.

Use-After-Free

2019-04-1921:33:38
Joel Griffith
www.npmjs.com
18

EPSS

0.972

Percentile

99.9%

Overview

Versions of puppeteer prior to 1.13.0 are vulnerable to the Use-After-Free vulnerability in Chromium (CVE-2019-5786). The Chromium FileReader API is vulnerable to Use-After-Free which may lead to Remote Code Execution.

Recommendation

Upgrade to version 1.13.0 or later.

References