
Deliberately vulnerable Node.js demo target for CVE-2020-7602, used to showcase automated dependency vulnerability detection and one-click PR-based remediation via compensating controls.
This repository is a synthetic demo target for Endor Labs EXPOSURE.
CVE-2020-7602 (no upstream fix; mitigated only via a compensating control).This repo is not a production application. It exists only to anchor the EXPOSURE "click → real PR opens" demo against a real GitHub repository.