-
-
Notifications
You must be signed in to change notification settings - Fork 15
Closed
Labels
bugSomething isn't workingSomething isn't working
Description
const npmDefaultRegistryMatcher = /^https?:\/\/registry\.npmjs\.org/
This hostname pattern may match any domain name, as it is missing a '$' or '/' at the end.
vector: register registry.npmjs.org.badactor.net --
see https://github.com/CycloneDX/cyclonedx-javascript-library/security/code-scanning/1
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
bugSomething isn't workingSomething isn't working