NodeJS/lodash/4.17.21


Lodash modular utilities.

https://www.npmjs.com/package/lodash
MIT

1 Security Vulnerabilities

Withdrawn: Arbitrary code execution in lodash

Published date: 2021-12-03T20:37:32Z
CVE: CVE-2021-41720
Links:

Withdrawn

GitHub has chosen to publish this CVE as a withdrawn advisory due to it not being a security issue. See this issue for more details.

CVE description

"** DISPUTED ** A command injection vulnerability in Lodash 4.17.21 allows attackers to achieve arbitrary code execution via the template function. This is a different parameter, method, and version than CVE-2021-23337. NOTE: the vendor's position is that it's the developer's responsibility to ensure that a template does not evaluate code that originates from untrusted input.

Affected versions: ["0.1.0", "0.2.0", "0.2.1", "0.2.2", "0.3.0", "0.3.1", "0.3.2", "0.4.0", "0.4.1", "0.4.2", "0.5.0-rc.1", "0.5.0", "0.5.1", "0.5.2", "0.6.0", "0.6.1", "0.7.0", "0.8.0", "0.8.1", "0.8.2", "0.9.0", "0.9.1", "0.9.2", "0.10.0", "1.0.0-rc.1", "1.0.0-rc.2", "1.0.0-rc.3", "1.0.0", "1.0.1", "1.1.0", "1.1.1", "1.2.0", "1.2.1", "1.3.0", "1.3.1", "2.0.0", "2.1.0", "2.2.0", "2.2.1", "2.3.0", "2.4.0", "2.4.1", "3.0.0", "3.0.1", "3.1.0", "3.2.0", "3.3.0", "3.3.1", "3.4.0", "3.5.0", "3.6.0", "1.0.2", "3.7.0", "2.4.2", "3.8.0", "3.9.0", "3.9.1", "3.9.2", "3.9.3", "3.10.0", "3.10.1", "4.0.0", "4.0.1", "4.1.0", "4.2.0", "4.2.1", "4.3.0", "4.4.0", "4.5.0", "4.5.1", "4.6.0", "4.6.1", "4.7.0", "4.8.0", "4.8.1", "4.8.2", "4.9.0", "4.10.0", "4.11.0", "4.11.1", "4.11.2", "4.12.0", "4.13.0", "4.13.1", "4.14.0", "4.14.1", "4.14.2", "4.15.0", "4.16.0", "4.16.1", "4.16.2", "4.16.3", "4.16.4", "4.16.5", "4.16.6", "4.17.0", "4.17.1", "4.17.2", "4.17.3", "4.17.4", "4.17.5", "4.17.9", "4.17.10", "4.17.11", "4.17.12", "4.17.13", "4.17.14", "4.17.15", "4.17.16", "4.17.17", "4.17.18", "4.17.19", "4.17.20", "4.17.21"]
Secure versions: []

114 Other Versions

Version License Security Released
4.17.21 MIT 1 2021-02-20 - 15:42 over 4 years
4.17.20 MIT 3 2020-08-13 - 16:53 almost 5 years
4.17.19 MIT 3 2020-07-08 - 17:14 almost 5 years
4.17.18 MIT 5 2020-07-08 - 16:07 almost 5 years
4.17.17 MIT 5 2020-07-08 - 12:08 almost 5 years
4.17.16 MIT 5 2020-07-08 - 10:50 almost 5 years
4.17.15 MIT 5 2019-07-19 - 02:28 almost 6 years
4.17.14 MIT 4 2019-07-10 - 15:44 almost 6 years
4.17.13 MIT 4 2019-07-09 - 22:24 almost 6 years
4.17.12 MIT 4 2019-07-09 - 21:07 almost 6 years
4.17.11 MIT 5 2018-09-12 - 18:32 almost 7 years
4.17.10 MIT 8 2018-04-24 - 18:07 about 7 years
4.17.9 MIT 8 2018-04-24 - 17:44 about 7 years
4.17.5 MIT 8 2018-02-04 - 00:34 over 7 years
4.17.4 MIT 10 2016-12-31 - 22:33 over 8 years
4.17.3 MIT 10 2016-12-24 - 14:25 over 8 years
4.17.2 MIT 10 2016-11-16 - 07:21 over 8 years
4.17.1 MIT 10 2016-11-15 - 07:03 over 8 years
4.17.0 MIT 10 2016-11-14 - 07:00 over 8 years
4.16.6 MIT 10 2016-11-01 - 06:38 over 8 years
4.16.5 MIT 10 2016-10-31 - 06:49 over 8 years
4.16.4 MIT 10 2016-10-06 - 15:13 over 8 years
4.16.3 MIT 10 2016-10-03 - 16:43 over 8 years
4.16.2 MIT 10 2016-09-26 - 03:11 almost 9 years
4.16.1 MIT 10 2016-09-20 - 16:59 almost 9 years
4.16.0 MIT 10 2016-09-19 - 14:59 almost 9 years
4.15.0 MIT 10 2016-08-12 - 14:39 almost 9 years
4.14.2 MIT 10 2016-08-08 - 15:35 almost 9 years
4.14.1 MIT 10 2016-07-29 - 14:49 almost 9 years
4.14.0 MIT 10 2016-07-24 - 18:40 almost 9 years
4.13.1 MIT 10 2016-05-23 - 15:59 about 9 years
4.13.0 MIT 10 2016-05-23 - 05:07 about 9 years
4.12.0 MIT 10 2016-05-08 - 19:25 about 9 years
4.11.2 MIT 10 2016-05-02 - 15:01 about 9 years
4.11.1 MIT 10 2016-04-14 - 07:21 about 9 years
4.11.0 MIT 10 2016-04-13 - 15:32 about 9 years
4.10.0 MIT 10 2016-04-11 - 14:43 about 9 years
4.9.0 MIT 10 2016-04-08 - 15:22 about 9 years
4.8.2 MIT 10 2016-04-05 - 02:15 about 9 years
4.8.1 MIT 10 2016-04-04 - 15:43 about 9 years
4.8.0 MIT 10 2016-04-04 - 14:54 about 9 years
4.7.0 MIT 10 2016-03-31 - 15:46 over 9 years
4.6.1 MIT 10 2016-03-02 - 18:09 over 9 years
4.6.0 MIT 10 2016-03-02 - 03:24 over 9 years
4.5.1 MIT 10 2016-02-22 - 06:42 over 9 years
4.5.0 MIT 10 2016-02-17 - 08:39 over 9 years
4.4.0 MIT 10 2016-02-16 - 07:10 over 9 years
4.3.0 MIT 10 2016-02-08 - 08:57 over 9 years
4.2.1 MIT 10 2016-02-03 - 16:00 over 9 years
4.2.0 MIT 10 2016-02-02 - 08:50 over 9 years