CVE List

CVE-2016-1000236

Moderate 4.4

Node-cookie-signature before 1.0.6 is affected by a timing attack due to the type of comparison used.

Published November 19, 2019.

Affected software

Get alerts for Cookie-signature Project Cookie-signature

Reference links