CVEs (2)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Semantic Release Project 1Semantic Release Nov 21, 2024 Jun 9, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 semantic-release is an open source npm package for automated version management and package publishing. In affected versions secrets that would normally be masked by semantic-release can be accidentally disclosed if they...Show more |
1Semantic Release Project 1Semantic Release Nov 21, 2024 Nov 18, 2020 N/A· v4 8.1 HIGH· v3 5.8 MEDIUM· v2 In the npm package semantic-release before version 17.2.3, secrets that would normally be masked by `semantic-release` can be accidentally disclosed if they contain characters that become encoded when included in a URL....Show more |