Known Vulnerabilities for products from Semantic-release Project
Listed below are 2 of the newest known vulnerabilities associated with the vendor "Semantic-release Project".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-31051 json | semantic-release is an open source npm package for automated version management and package publishing. In affected versions ... | 7.5 - HIGH | 2022-06-09 | 2022-06-17 |
| CVE-2020-26226 json | In the npm package semantic-release before version 17.2.3, secrets that would normally be masked by `semantic-release` can be... | 8.1 - HIGH | 2020-11-18 | 2020-12-03 |
Known software with vulnerabilities from Semantic-release Project
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Semantic-release Project | Semantic-release | 1.0.0 |