Versions of constantinople prior to 3.1.1 are vulnerable to a sandbox bypass which can lead to arbitrary code execution. External Reference: https://nodesecurity.io/advisories/568 Upstream commit: https://github.com/pugjs/constantinople/commit/01d409c0d081dfd65223e6b7767c244156d35f7f
Created nodejs-constantinople tracking bugs for this issue: Affects: epel-all [bug 1577704] Affects: fedora-all [bug 1577705]