pnpm Dependency Source Identifier Normalization Bypass (CVE-2025-53487)
Security AdvisoryCVE-2025-53487Highpnpm
Affected:
- pnpm <10.34.2
- pnpm >=11.0.0 <11.5.3
Fixed in:
- pnpm >=10.34.2
- pnpm >=11.5.3
Referenced CVEs: CVE-2026-55487 · 7.5
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.