Candidate: CVE-2020-28469 PublicDate: 2021-06-03 16:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-28469 https://snyk.io/vuln/SNYK-JS-GLOBPARENT-1016905 https://github.com/gulpjs/glob-parent/commit/f9231168b0041fea3f8f954b3cceb56269fc6366 Description: This affects the package glob-parent before 5.1.2. The enclosure regex used to check for strings ending in enclosure containing path separator. Ubuntu-Description: Notes: Mitigation: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H [7.5 HIGH] Patches_node-glob-parent: upstream_node-glob-parent: needs-triage precise/esm_node-glob-parent: DNE trusty_node-glob-parent: ignored (out of standard support) trusty/esm_node-glob-parent: DNE xenial_node-glob-parent: DNE bionic_node-glob-parent: not-affected (code not present) focal_node-glob-parent: not-affected (code not present) groovy_node-glob-parent: ignored (reached end-of-life) hirsute_node-glob-parent: not-affected (code not present) impish_node-glob-parent: not-affected (code not present) jammy_node-glob-parent: not-affected (code not present) devel_node-glob-parent: not-affected (code not present)