igniteui 0.0.5 and earlier downloads JavaScript and CSS resources over insecure protocol.
The product does not encrypt sensitive or critical information before storage or transmission.
Software security is not security software. Here we're concerned with topics like authentication, access control, confidentiality, cryptography, and privilege management.
Link | Tags |
---|---|
https://nodesecurity.io/advisories/116 | third party advisory |