Vulnerability Change Records for CVE-2021-21368

Change History

Initial Analysis 3/19/2021 3:35:50 PM

Action Type Old Value New Value
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:a:msgpack5_project:msgpack5:*:*:*:*:*:node.js:*:* versions up to (excluding) 3.6.1
     *cpe:2.3:a:msgpack5_project:msgpack5:*:*:*:*:*:node.js:*:* versions from (including) 4.0.0 up to (excluding) 4.5.1
     *cpe:2.3:a:msgpack5_project:msgpack5:*:*:*:*:*:node.js:*:* versions from (including) 5.0.0 up to (excluding) 5.2.1
Added CVSS V2

								
							
							
						
NIST (AV:N/AC:L/Au:S/C:P/I:P/A:P)
Added CVSS V3.1

								
							
							
						
NIST AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Changed Reference Type
https://github.com/mcollina/msgpack5/commit/d4e6cb956ae51c8bb2828e71c7c1107c340cf1e8 No Types Assigned
https://github.com/mcollina/msgpack5/commit/d4e6cb956ae51c8bb2828e71c7c1107c340cf1e8 Patch, Third Party Advisory
Changed Reference Type
https://github.com/mcollina/msgpack5/releases/tag/v3.6.1 No Types Assigned
https://github.com/mcollina/msgpack5/releases/tag/v3.6.1 Release Notes, Third Party Advisory
Changed Reference Type
https://github.com/mcollina/msgpack5/releases/tag/v4.5.1 No Types Assigned
https://github.com/mcollina/msgpack5/releases/tag/v4.5.1 Release Notes, Third Party Advisory
Changed Reference Type
https://github.com/mcollina/msgpack5/releases/tag/v5.2.1 No Types Assigned
https://github.com/mcollina/msgpack5/releases/tag/v5.2.1 Release Notes, Third Party Advisory
Changed Reference Type
https://github.com/mcollina/msgpack5/security/advisories/GHSA-gmjw-49p4-pcfm No Types Assigned
https://github.com/mcollina/msgpack5/security/advisories/GHSA-gmjw-49p4-pcfm Exploit, Third Party Advisory
Changed Reference Type
https://www.npmjs.com/package/msgpack5 No Types Assigned
https://www.npmjs.com/package/msgpack5 Product, Third Party Advisory