ip is vulnerable to SSRF
81
High Risk
NPM ip packages confuses public and private IPs, might lead to SSRF.
You're running any version of 'ip' up to 2.0.1
ip is vulnerable to SSRF.
This package is no longer maintained. Users should look for ways to stop using this package. For example, the latest version of NPM library 'socks' does not use this library any more.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant