4.14.0
3 years ago
2 days ago
Known vulnerabilities in the @clerk/shared package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
@clerk/shared is an Internal package utils used by the Clerk SDKs Affected versions of this package are vulnerable to Incorrect Authorization through the The vulnerable logic in Note: From the project maintainers: If you pin @clerk/clerk-js directly, upgrade it to the patched version. Most apps load @clerk/clerk-js from Clerk's CDN through their framework package and will receive the fix automatically, with no upgrade step required. How to fix Incorrect Authorization? Upgrade | >=3.0.0 <3.47.5>=4.0.0 <4.8.3 |
@clerk/shared is an Internal package utils used by the Clerk SDKs Affected versions of this package are vulnerable to Incorrect Authorization via the How to fix Incorrect Authorization? Upgrade | >=2.20.17 <2.22.1>=3.47.3 <3.47.4>=4.0.0 <4.8.1 |