lilconfig is vulnerable to Code Injection
50
Medium Risk
A code injection vulnerability was silently addressed in version 3.1.1 of lilconfig, impacting all uses of the package in earlier versions.
You are affected by this flaw if you use the 3.1.0 version of this package.
lilconfig is vulnerable to Code Injection in versions 3.1.0 - 3.1.0.
To fix, upgrade to lilconfig 3.1.1 or above.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant