-
-
Notifications
You must be signed in to change notification settings - Fork 227
Open
Description
Currently the torrent-discovery dependency is outdated causing the following Denial of Service exploit:
High Denial of Service
Package ws
Patched in >= 1.1.5 <2.0.0 || >=3.3.1
Dependency of torrent-stream
Path torrent-stream > torrent-discovery > bittorrent-tracker >
simple-websocket > wsMore info https://nodesecurity.io/advisories/550
Please update the dependency to the latest version, this package is behind by quite some major versions..
Metadata
Metadata
Assignees
Labels
No labels