-
Notifications
You must be signed in to change notification settings - Fork 830
Closed
Labels
priority: highstatus: done/releasedIssue has been completed, no further action is needed.Issue has been completed, no further action is needed.type: fixIssues describing a broken feature.Issues describing a broken feature.
Description
Description
https://security.snyk.io/vuln/SNYK-JS-CLASSVALIDATOR-1730566
Affected versions of this package are vulnerable to Improper Input Validation via bypassing the input validation in validate(), which can lead to cross-site scripting (XSS) or SQL injection. NOTE: There is an optional forbidUnknownValues parameter that can be used to reduce the risk of this bypass.
Borales, moraesjeremias, Reckonyd, tetchel, andrew-itscript and 11 moreChoGathK, fhtyamamoto and ngafta
Metadata
Metadata
Assignees
Labels
priority: highstatus: done/releasedIssue has been completed, no further action is needed.Issue has been completed, no further action is needed.type: fixIssues describing a broken feature.Issues describing a broken feature.