NodeJS/karma/0.8.1
Spectacular Test Runner for JavaScript.
https://www.npmjs.com/package/karma
MIT
2 Security Vulnerabilities
Cross-site Scripting in karma
Published date: 2022-02-06T00:00:54Z
CVE: CVE-2022-0437
Links:
- https://nvd.nist.gov/vuln/detail/CVE-2022-0437
- https://github.com/karma-runner/karma/commit/839578c45a8ac42fbc1d72105f97eab77dd3eb8a
- https://huntr.dev/bounties/64b67ea1-5487-4382-a5f6-e8a95f798885
- https://github.com/karma-runner/karma/releases/tag/v6.3.14
- https://github.com/advisories/GHSA-7x7c-qm48-pq9c
karma prior to version 6.3.14 contains a cross-site scripting vulnerability.
Affected versions:
["0.8.0", "0.9.0-dart", "0.8.1", "0.8.2", "0.8.3", "0.9.0", "0.8.4", "0.9.1", "0.8.5", "0.9.2", "0.9.2-dart", "0.9.3", "0.8.6", "0.9.4", "0.8.7", "0.9.5", "0.9.6", "0.8.8", "0.9.7", "0.9.8", "0.10.0", "0.10.1", "0.10.2", "0.11.0", "0.11.1", "0.10.3", "0.10.4", "0.11.2", "0.11.3", "0.10.5", "0.11.4", "0.11.5", "0.10.6", "0.11.6", "0.10.7", "0.11.7", "0.11.8", "0.11.9", "0.10.8", "0.11.10", "0.11.11", "0.11.12", "0.10.9", "0.11.12-dev2", "0.11.13", "0.11.14", "0.12.0", "0.10.10", "0.12.1", "0.12.2", "0.12.3", "0.12.4", "0.12.5", "0.12.6", "0.12.6-beta-43e6e28", "0.12.7", "0.12.8", "0.12.9", "0.12.10", "0.12.11", "0.12.12", "0.12.11-beta-3029418", "0.12.13", "0.12.14", "0.12.15", "0.12.16", "0.12.16-beta-905422d", "0.12.17", "0.12.18", "0.12.19", "0.12.20", "0.12.21", "0.12.22", "0.12.23", "0.12.24", "0.12.24-beta-6cf7955", "0.12.25", "0.12.25-beta-37a7958", "0.12.25-beta-ad5bc24", "0.12.26", "0.12.27", "0.12.28", "0.12.28-beta-b9be580", "0.12.29", "0.12.30", "0.12.31", "0.12.28-beta-f65c864", "0.12.24-dev-test", "0.12.24-dev-socketio10", "0.12.24-dev-socketio10-2", "0.12.32-beta.0", "0.12.32", "0.13.0-rc.0", "0.12.33", "0.13.0-rc.1", "0.12.34", "0.13.0-rc.2", "0.12.35", "0.13.0-rc.3", "0.12.36", "0.13.0-rc.4", "0.12.37", "0.13.0-rc.5", "0.13.0-rc.6", "0.13.0-rc.7", "0.13.0-rc.8", "0.13.0-rc.9", "0.13.0", "0.13.1", "0.13.2", "0.13.3", "0.13.4", "0.13.5", "0.13.6", "0.13.7", "0.13.8", "0.13.9", "0.13.10", "0.13.11", "0.13.12", "0.13.13", "0.13.14", "0.13.15", "0.13.16", "0.13.17", "0.13.18", "0.13.19", "0.13.20", "0.13.21", "0.13.22", "1.0.0", "1.1.0", "1.1.1", "1.1.2", "1.2.0", "1.3.0", "1.4.0", "1.4.1", "1.5.0", "1.6.0", "1.7.0", "1.7.1", "2.0.0", "2.0.2", "2.0.3", "2.0.4", "2.0.5", "3.0.0", "3.1.0", "3.1.1", "3.1.2", "3.1.3", "3.1.4", "4.0.0", "4.0.1", "4.1.0", "4.2.0", "4.3.0", "4.4.0", "4.4.1", "5.0.0", "5.0.1", "5.0.2", "5.0.3", "5.0.4", "5.0.5", "5.0.6", "5.0.7", "5.0.8", "5.0.9", "5.1.0", "5.1.1", "5.2.0", "5.2.1", "5.2.2", "5.2.3", "6.0.0", "6.0.1", "6.0.2", "6.0.3", "6.0.4", "6.1.0", "6.1.1", "6.1.2", "6.2.0", "6.3.0", "6.3.1", "6.3.2", "6.3.3", "6.3.4", "6.3.5", "6.3.6", "6.3.7", "6.3.8", "6.3.9", "6.3.10", "6.3.11", "6.3.12", "6.3.13"]
Secure versions:
[6.3.16, 6.3.17, 6.3.18, 6.3.19, 6.3.20, 6.4.0, 6.4.1, 6.4.2, 6.4.3, 6.4.4]
Recommendation:
Update to version 6.4.4.
Open redirect in karma
Published date: 2022-02-26T00:00:38Z
CVE: CVE-2021-23495
Links:
Karma before 6.3.16 is vulnerable to Open Redirect due to missing validation of the return_url query parameter.
Affected versions:
["0.8.0", "0.9.0-dart", "0.8.1", "0.8.2", "0.8.3", "0.9.0", "0.8.4", "0.9.1", "0.8.5", "0.9.2", "0.9.2-dart", "0.9.3", "0.8.6", "0.9.4", "0.8.7", "0.9.5", "0.9.6", "0.8.8", "0.9.7", "0.9.8", "0.10.0", "0.10.1", "0.10.2", "0.11.0", "0.11.1", "0.10.3", "0.10.4", "0.11.2", "0.11.3", "0.10.5", "0.11.4", "0.11.5", "0.10.6", "0.11.6", "0.10.7", "0.11.7", "0.11.8", "0.11.9", "0.10.8", "0.11.10", "0.11.11", "0.11.12", "0.10.9", "0.11.12-dev2", "0.11.13", "0.11.14", "0.12.0", "0.10.10", "0.12.1", "0.12.2", "0.12.3", "0.12.4", "0.12.5", "0.12.6", "0.12.6-beta-43e6e28", "0.12.7", "0.12.8", "0.12.9", "0.12.10", "0.12.11", "0.12.12", "0.12.11-beta-3029418", "0.12.13", "0.12.14", "0.12.15", "0.12.16", "0.12.16-beta-905422d", "0.12.17", "0.12.18", "0.12.19", "0.12.20", "0.12.21", "0.12.22", "0.12.23", "0.12.24", "0.12.24-beta-6cf7955", "0.12.25", "0.12.25-beta-37a7958", "0.12.25-beta-ad5bc24", "0.12.26", "0.12.27", "0.12.28", "0.12.28-beta-b9be580", "0.12.29", "0.12.30", "0.12.31", "0.12.28-beta-f65c864", "0.12.24-dev-test", "0.12.24-dev-socketio10", "0.12.24-dev-socketio10-2", "0.12.32-beta.0", "0.12.32", "0.13.0-rc.0", "0.12.33", "0.13.0-rc.1", "0.12.34", "0.13.0-rc.2", "0.12.35", "0.13.0-rc.3", "0.12.36", "0.13.0-rc.4", "0.12.37", "0.13.0-rc.5", "0.13.0-rc.6", "0.13.0-rc.7", "0.13.0-rc.8", "0.13.0-rc.9", "0.13.0", "0.13.1", "0.13.2", "0.13.3", "0.13.4", "0.13.5", "0.13.6", "0.13.7", "0.13.8", "0.13.9", "0.13.10", "0.13.11", "0.13.12", "0.13.13", "0.13.14", "0.13.15", "0.13.16", "0.13.17", "0.13.18", "0.13.19", "0.13.20", "0.13.21", "0.13.22", "1.0.0", "1.1.0", "1.1.1", "1.1.2", "1.2.0", "1.3.0", "1.4.0", "1.4.1", "1.5.0", "1.6.0", "1.7.0", "1.7.1", "2.0.0", "2.0.2", "2.0.3", "2.0.4", "2.0.5", "3.0.0", "3.1.0", "3.1.1", "3.1.2", "3.1.3", "3.1.4", "4.0.0", "4.0.1", "4.1.0", "4.2.0", "4.3.0", "4.4.0", "4.4.1", "5.0.0", "5.0.1", "5.0.2", "5.0.3", "5.0.4", "5.0.5", "5.0.6", "5.0.7", "5.0.8", "5.0.9", "5.1.0", "5.1.1", "5.2.0", "5.2.1", "5.2.2", "5.2.3", "6.0.0", "6.0.1", "6.0.2", "6.0.3", "6.0.4", "6.1.0", "6.1.1", "6.1.2", "6.2.0", "6.3.0", "6.3.1", "6.3.2", "6.3.3", "6.3.4", "6.3.5", "6.3.6", "6.3.7", "6.3.8", "6.3.9", "6.3.10", "6.3.11", "6.3.12", "6.3.13", "6.3.14", "6.3.15"]
Secure versions:
[6.3.16, 6.3.17, 6.3.18, 6.3.19, 6.3.20, 6.4.0, 6.4.1, 6.4.2, 6.4.3, 6.4.4]
Recommendation:
Update to version 6.4.4.
211 Other Versions
Version | License | Security | Released | |
---|---|---|---|---|
0.13.3 | MIT | 2 | 2015-07-22 - 18:35 | over 9 years |
0.13.2 | MIT | 2 | 2015-07-17 - 21:31 | over 9 years |
0.13.1 | MIT | 2 | 2015-07-16 - 19:25 | over 9 years |
0.13.0 | MIT | 2 | 2015-07-15 - 18:36 | over 9 years |
0.13.0-rc.9 | MIT | 2 | 2015-07-13 - 18:51 | over 9 years |
0.13.0-rc.8 | MIT | 2 | 2015-07-09 - 08:17 | over 9 years |
0.13.0-rc.7 | MIT | 2 | 2015-07-08 - 19:52 | over 9 years |
0.13.0-rc.6 | MIT | 2 | 2015-06-25 - 19:56 | over 9 years |
0.13.0-rc.5 | MIT | 2 | 2015-06-23 - 22:25 | over 9 years |
0.13.0-rc.4 | MIT | 2 | 2015-06-04 - 19:11 | over 9 years |
0.13.0-rc.3 | MIT | 2 | 2015-05-29 - 20:57 | over 9 years |
0.13.0-rc.2 | MIT | 2 | 2015-05-29 - 20:39 | over 9 years |
0.13.0-rc.1 | MIT | 2 | 2015-05-27 - 14:36 | over 9 years |
0.13.0-rc.0 | MIT | 2 | 2015-05-26 - 23:01 | over 9 years |
0.12.37 | MIT | 2 | 2015-06-23 - 22:17 | over 9 years |
0.12.36 | MIT | 2 | 2015-06-04 - 08:42 | over 9 years |
0.12.35 | MIT | 2 | 2015-05-29 - 20:41 | over 9 years |
0.12.34 | MIT | 2 | 2015-05-29 - 20:26 | over 9 years |
0.12.33 | MIT | 2 | 2015-05-26 - 23:03 | over 9 years |
0.12.32 | MIT | 2 | 2015-02-24 - 19:50 | over 9 years |
0.12.32-beta.0 | MIT | 2 | 2015-02-24 - 17:52 | over 9 years |
0.12.31 | MIT | 2 | 2015-01-02 - 20:48 | almost 10 years |
0.12.30 | MIT | 2 | 2014-12-30 - 22:46 | almost 10 years |
0.12.29 | MIT | 2 | 2014-12-30 - 22:30 | almost 10 years |
0.12.28 | MIT | 2 | 2014-11-25 - 15:40 | almost 10 years |
0.12.28-beta-b9be580 | MIT | 2 | 2014-11-27 - 19:04 | almost 10 years |
0.12.28-beta-f65c864 | MIT | 2 | 2015-01-02 - 23:24 | almost 10 years |
0.12.27 | MIT | 2 | 2014-11-25 - 13:09 | almost 10 years |
0.12.26 | MIT | 2 | 2014-11-25 - 00:31 | almost 10 years |
0.12.25 | MIT | 2 | 2014-11-14 - 15:56 | almost 10 years |
0.12.25-beta-37a7958 | MIT | 2 | 2014-11-24 - 19:14 | almost 10 years |
0.12.25-beta-ad5bc24 | MIT | 2 | 2014-11-24 - 21:48 | almost 10 years |
0.12.24 | MIT | 2 | 2014-09-30 - 18:28 | about 10 years |
0.12.24-beta-6cf7955 | MIT | 2 | 2014-11-14 - 15:20 | almost 10 years |
0.12.24-dev-socketio10 | MIT | 2 | 2015-01-28 - 22:26 | almost 10 years |
0.12.24-dev-test | MIT | 2 | 2015-01-28 - 22:16 | almost 10 years |
0.12.24-dev-socketio10-2 | MIT | 2 | 2015-01-28 - 23:23 | almost 10 years |
0.12.23 | MIT | 2 | 2014-08-28 - 19:15 | about 10 years |
0.12.22 | MIT | 2 | 2014-08-19 - 21:45 | about 10 years |
0.12.21 | MIT | 2 | 2014-08-05 - 20:29 | over 10 years |
0.12.20 | MIT | 2 | 2014-08-05 - 18:23 | over 10 years |
0.12.19 | MIT | 2 | 2014-07-26 - 00:20 | over 10 years |
0.12.18 | MIT | 2 | 2014-07-25 - 18:49 | over 10 years |
0.12.17 | MIT | 2 | 2014-07-11 - 02:27 | over 10 years |
0.12.16 | MIT | 2 | 2014-05-10 - 19:35 | over 10 years |
0.12.16-beta-905422d | MIT | 2 | 2014-07-11 - 01:03 | over 10 years |
0.12.15 | MIT | 2 | 2014-05-08 - 20:39 | over 10 years |
0.12.14 | MIT | 2 | 2014-04-27 - 06:40 | over 10 years |
0.12.13 | MIT | 2 | 2014-04-27 - 06:07 | over 10 years |
0.12.12 | MIT | 2 | 2014-04-25 - 06:52 | over 10 years |
0.12.11 | MIT | 2 | 2014-04-25 - 06:12 | over 10 years |
0.12.11-beta-3029418 | MIT | 2 | 2014-04-25 - 07:13 | over 10 years |
0.12.10 | MIT | 2 | 2014-04-23 - 21:36 | over 10 years |
0.12.9 | MIT | 2 | 2014-04-14 - 03:23 | over 10 years |
0.12.8 | MIT | 2 | 2014-04-14 - 00:52 | over 10 years |
0.12.7 | MIT | 2 | 2014-04-14 - 00:26 | over 10 years |
0.12.6 | MIT | 2 | 2014-04-09 - 22:55 | over 10 years |
0.12.6-beta-43e6e28 | MIT | 2 | 2014-04-13 - 02:11 | over 10 years |
0.12.5 | MIT | 2 | 2014-04-08 - 21:38 | over 10 years |
0.12.4 | MIT | 2 | 2014-04-06 - 22:55 | over 10 years |
0.12.3 | MIT | 2 | 2014-04-01 - 22:55 | over 10 years |
0.12.2 | MIT | 2 | 2014-03-30 - 22:55 | over 10 years |
0.12.1 | MIT | 2 | 2014-03-17 - 18:13 | over 10 years |
0.12.0 | MIT | 2 | 2014-03-11 - 05:38 | over 10 years |
0.11.14 | MIT | 2 | 2014-02-05 - 01:49 | almost 11 years |
0.11.13 | MIT | 2 | 2014-01-20 - 07:55 | almost 11 years |
0.11.12 | MIT | 2 | 2013-12-26 - 17:09 | almost 11 years |
0.11.12-dev2 | MIT | 2 | 2014-01-14 - 01:09 | almost 11 years |
0.11.11 | MIT | 2 | 2013-12-24 - 01:56 | almost 11 years |
0.11.10 | MIT | 2 | 2013-12-23 - 07:55 | almost 11 years |
0.11.9 | MIT | 2 | 2013-12-04 - 03:45 | almost 11 years |
0.11.8 | MIT | 2 | 2013-12-03 - 20:17 | almost 11 years |
0.11.7 | MIT | 2 | 2013-12-03 - 07:02 | almost 11 years |
0.11.6 | MIT | 2 | 2013-12-02 - 07:55 | almost 11 years |
0.11.5 | MIT | 2 | 2013-11-25 - 23:22 | almost 11 years |
0.11.4 | MIT | 2 | 2013-11-21 - 20:42 | almost 11 years |
0.11.3 | MIT | 2 | 2013-11-21 - 07:55 | almost 11 years |
0.11.2 | MIT | 2 | 2013-11-04 - 07:55 | about 11 years |
0.11.1 | MIT | 2 | 2013-10-25 - 18:49 | about 11 years |
0.11.0 | MIT | 2 | 2013-08-27 - 04:40 | about 11 years |
0.10.10 | MIT | 2 | 2014-03-11 - 17:20 | over 10 years |
0.10.9 | MIT | 2 | 2013-12-30 - 07:55 | almost 11 years |
0.10.8 | MIT | 2 | 2013-12-04 - 18:20 | almost 11 years |
0.10.7 | MIT | 2 | 2013-12-02 - 07:55 | almost 11 years |
0.10.6 | MIT | 2 | 2013-11-27 - 02:51 | almost 11 years |
0.10.5 | MIT | 2 | 2013-11-21 - 07:55 | almost 11 years |
0.10.4 | MIT | 2 | 2013-10-26 - 04:56 | about 11 years |
0.10.3 | MIT | 2 | 2013-10-25 - 18:51 | about 11 years |
0.10.2 | MIT | 2 | 2013-08-21 - 23:29 | about 11 years |
0.10.1 | MIT | 2 | 2013-08-07 - 06:55 | over 11 years |
0.10.0 | MIT | 2 | 2013-08-06 - 09:30 | over 11 years |
0.9.8 | MIT | 2 | 2013-08-05 - 18:45 | over 11 years |
0.9.7 | MIT | 2 | 2013-08-01 - 06:55 | over 11 years |
0.9.6 | MIT | 2 | 2013-07-29 - 06:00 | over 11 years |
0.9.5 | MIT | 2 | 2013-07-21 - 19:26 | over 11 years |
0.9.4 | MIT | 2 | 2013-06-28 - 08:28 | over 11 years |
0.9.3 | MIT | 2 | 2013-06-17 - 06:14 | over 11 years |
0.9.2 | MIT | 2 | 2013-04-16 - 22:39 | over 11 years |
0.9.2-dart | MIT | 2 | 2013-04-18 - 22:20 | over 11 years |
0.9.1 | MIT | 2 | 2013-04-05 - 00:27 | over 11 years |