A Study of Node.js Using Injection Vulnerabilities
At a glance
- Citations
- 0
- References
- 0
- Comments
- 0
Abstract
The Node.js community has prompt the making of numerous applications, for example, server-side web applications and work area applications. Not at all like client side JavaScript code, Node.js applications can collaborate uninhibitedly with the working framework without the advantages of a security sandbox. The mind boggling exchange between Node.js modules prompts unobtrusive infusion vulnerabilities being presented crosswise over module limits. This paper displays a substantial scale consider crosswise over 235,850 Node.js modules to investigate such vulnerabilities. We demonstrate that infusion vulnerabilities are predominant practically speaking, both due to eval, which was already examined for program code, and because of the effective executive API presented in Node.js. Our investigation demonstrates that a great many modules might be helpless against charge infusion assaults and that notwithstanding for prominent undertakings it requires long investment to settle the issue.
Publication details
- DOI
- 10.23956/ijarcsse.v8i5.666
- OpenAlex
- W2806911035
- Document type
- article
- Language
- EN
- Source
- International Journal of Advanced Research in Computer Science and Software Engineering
- Last metadata update
Comments
Log in to join the discussion.