6.13.0
5 years ago
2 days ago
Known vulnerabilities in the @clerk/clerk-js package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
@clerk/clerk-js is a Clerk JS library Affected versions of this package are vulnerable to Incorrect Authorization through the The vulnerable logic in Note: From the project maintainers: If you pin @clerk/clerk-js directly, upgrade it to the patched version. Most apps load @clerk/clerk-js from Clerk's CDN through their framework package and will receive the fix automatically, with no upgrade step required. How to fix Incorrect Authorization? Upgrade | >=5.22.0 <5.125.10>=6.0.0 <6.7.5 |