Reference implementation of Joyent's HTTP Signature scheme.
77%
Total Score
37
100
100
100
50
| Title | Versions | Severity |
|---|---|---|
CVE-2017-16005 http-signature is vulnerable to Improper Input Validation in versions 0.0.0 - 0.10.0. | 0.0.0 - 0.10.0 | High |
| Dependency | Last Release | Score |
|---|---|---|
sshpk Version ^1.18.0 | — | — |
jsprim Version ^2.0.2 | — | — |
assert-plus Version ^1.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant