Description
cobalt-cli downloads resources over HTTP, which leaves it vulnerable to MITM attacks.
Remediation
References
https://nodesecurity.io/advisories/197
Related Vulnerabilities
CVE-2019-16563 Vulnerability in maven package tech.andrey.jenkins:mission-control-view
CVE-2023-5572 Vulnerability in npm package @vrite/sdk
CVE-2019-16943 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2023-5245 Vulnerability in maven package ml.combust.bundle:bundle-ml_2.12