aws-sdk@2.1658.0 vulnerabilities

AWS SDK for JavaScript

Direct Vulnerabilities

Known vulnerabilities in the aws-sdk package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
Improper Validation of Syntactic Correctness of Input

Affected versions of this package are vulnerable to Improper Validation of Syntactic Correctness of Input in the region input field. An attacker can cause AWS API calls to be routed to unintended or non-existent hosts by supplying an invalid value to this parameter.

##Workaround

This vulnerability can be mitigated by implementing proper input sanitization in application code or migrating to AWS SDK for JavaScript v3.

How to fix Improper Validation of Syntactic Correctness of Input?

There is no fixed version for aws-sdk.

>=2.0.0-rc1