CVE-2016-10613: Bionode Bionode-SRA

Medium severity, CVSS 5.9. EPSS: 0.5% chance of exploitation in the next 30 days.

bionode-sra is a Node.js wrapper for SRA Toolkit. bionode-sra downloads data resources over HTTP, which leaves it vulnerable to MITM attacks.

Affected products

  • Bionode Bionode-SRA: up to and including 1.0.3

Published 2018-06-01. Last modified 2026-06-17.