2.0.4
11 years ago
3 years ago
Known vulnerabilities in the bson-objectid package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
bson-objectid is a library that allows you to construct ObjectIDs without the mongodb driver or bson module. Affected versions of this package are vulnerable to Insufficient Input Validation. The PoC by Feng Xiao (xiaofen9)
How to fix Insufficient Input Validation? There is no fixed version for | * |