Description
aegir is a module to help automate JavaScript project management. Version 12.0.0 through and including 12.0.7 bundled and published to npm the user (that performed a aegir-release) GitHub token.
Remediation
References
https://nodesecurity.io/advisories/546
Related Vulnerabilities
CVE-2023-37958 Vulnerability in maven package org.jenkins-ci.plugins:sumologic-publisher
CVE-2022-27772 Vulnerability in maven package org.springframework.boot:spring-boot
CVE-2020-7712 Vulnerability in maven package org.webjars.npm:json
CVE-2022-31070 Vulnerability in npm package @finastra/nestjs-proxy
CVE-2022-48285 Vulnerability in maven package org.webjars.npm:jszip