CVE-2024-47829 | pnpm up to 9.x MD5 /node_modoules/ weak hash (GHSA-8cc4-rfj6-fhg4)
A vulnerability was found in pnpm up to 9.x. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /node_modoules/ of the component MD5 Handler. The manipulation leads to use of weak hash.
This vulnerability is known as CVE-2024-47829. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.