Vulnerabilities/

Validation Bypass in schema-inspector

Severity:
High

Description

In schema-inspector before 1.6.9, a maliciously crafted JavaScript object can bypass the sanitize() and the validate() function used within schema-inspector.

Recommendation

Update the schema-inspector package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
schema-inspector
Anything's wrong? Let us know Last updated on January 09, 2023

This issue is available in SmartScanner Professional

See Pricing