Description
A vulnerability was found in ua-parser-js 0.7.29/0.8.0/1.0.0. It has been rated as critical. This issue affects the crypto mining component which introduces a backdoor. Upgrading to version 0.7.30, 0.8.1 and 1.0.1 is able to address this issue. It is recommended to upgrade the affected component.
Remediation
References
Related Vulnerabilities
WordPress Plugin myghpay WooCommerce Payment Gateway Cross-Site Scripting (3.0)
WebLogic Deserialization of Untrusted Data Vulnerability (CVE-2019-14540)
WordPress Plugin Membership Simplified Arbitrary File Download (1.58)
WordPress Plugin iThemes Exchange:Simple WP Ecommerce Remote Code Execution (1.14.0)
Plone CMS Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2012-5493)