Description
aegir is a module to help automate JavaScript project management. Version 12.0.0 through and including 12.0.7 bundled and published to npm the user (that performed a aegir-release) GitHub token.
Remediation
References
https://nodesecurity.io/advisories/546
Related Vulnerabilities
CVE-2022-31167 Vulnerability in maven package org.xwiki.platform:xwiki-platform-security
CVE-2020-7760 Vulnerability in maven package org.apache.marmotta.webjars:codemirror
CVE-2022-24614 Vulnerability in maven package com.drewnoakes:metadata-extractor
CVE-2020-7622 Vulnerability in maven package io.jooby:jooby-netty
CVE-2022-24697 Vulnerability in maven package org.apache.kylin:kylin-spark-engine