0.1.0
10 days ago
10 days ago
Known vulnerabilities in the @mathharo/promptcraft-sanitize package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
@mathharo/promptcraft-sanitize is a Sanitizer fix for overlapping multi-token patterns. Affected versions of this package are vulnerable to Permissive Regular Expression due to insufficient replacement of multi-character tokens. An attacker can execute arbitrary scripts in the context of the application by crafting input that exploits overlapping patterns in the input sanitization logic. How to fix Permissive Regular Expression? There is no fixed version for | >=0.1.0 |