n-readlines is vulnerable to Use of Obsolete Function
60
Medium Risk
Affected versions of this package contain a vulnerability titled Use of Deprecated and Insecure Buffer Constructor, where the code utilizes the deprecated new Buffer() constructor instead of the safer Buffer.alloc(). This deprecated constructor, under certain conditions, can return a Buffer containing uninitialized memory from the heap. An attacker could exploit this by manipulating the application to read chunks of data, potentially leaking sensitive information like encryption keys, session tokens, or other process memory contents into the returned buffer.
You are affected if you are using a version that falls within the vulnerable range.
n-readlines is vulnerable to Use of Obsolete Function in versions 0.1.0 - 1.0.1.
Upgrade the n-readlines library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant