JSDom improperly allows the loading of local resources, which allows for local files to be manipulated by a malicious web page when script execution is enabled.
{ "binaries": [ { "binary_name": "node-jsdom", "binary_version": "0.8.10+dfsg1-1" } ] }
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2021/UBUNTU-CVE-2021-20066.json"
{ "binaries": [ { "binary_name": "node-jsdom", "binary_version": "19.0.0+~cs90.11.27-1" } ] }
{ "binaries": [ { "binary_name": "node-jsdom", "binary_version": "20.0.3+~cs124.18.21-4" } ] }
{ "binaries": [ { "binary_name": "node-jsdom", "binary_version": "20.0.3+~cs124.18.21-5" } ] }
{ "binaries": [ { "binary_name": "node-jsdom", "binary_version": "20.0.3+~cs124.18.21-6" } ] }