6.0.3
9 years ago
4 years ago
Known vulnerabilities in the org.webjars.npm:kind-of package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
org.webjars.npm:kind-of is a package that gets the native type of a value. Affected versions of this package are vulnerable to Validation Bypass. It leverages the built-in constructor of unsafe user-input to detect type information. However, a crafted payload can overwrite this built in attribute to manipulate the type detection result. How to fix Validation Bypass? Upgrade | [6.0.0,6.0.3) |