Description
install-g-test downloads resources over HTTP, which leaves it vulnerable to MITM attacks.
Remediation
References
https://nodesecurity.io/advisories/228
Related Vulnerabilities
CVE-2018-18853 Vulnerability in maven package io.spray:spray-json_2.10
CVE-2020-4051 Vulnerability in maven package org.webjars.bower:dijit
CVE-2016-10660 Vulnerability in npm package fis-parser-sass-bin
CVE-2020-6463 Vulnerability in npm package electron
CVE-2020-2252 Vulnerability in maven package org.jenkins-ci.plugins:mailer