@dadigua/hyperchat@2.0.0-alpha.55

HyperChat Core - Node.js backend and CLI tool with AI chat, MCP support

  • latest version

    2.0.0-alpha.55

  • first published

    10 months ago

  • latest version published

    9 months ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the @dadigua/hyperchat package. This does not include vulnerabilities belonging to this package’s dependencies.

    Fix vulnerabilities automatically

    Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    Server-side Request Forgery (SSRF)

    @dadigua/hyperchat is a HyperChat Core - Node.js backend and CLI tool with AI chat, MCP support

    Affected versions of this package are vulnerable to Server-side Request Forgery (SSRF) via the fetch function in the AI Proxy Middleware component when processing the baseurl argument. An attacker can make arbitrary requests from the server to internal or external resources by supplying crafted input remotely.

    How to fix Server-side Request Forgery (SSRF)?

    There is no fixed version for @dadigua/hyperchat.

    >=0.0.0