4.3.5
12 years ago
2 years ago
Package is deprecated
Known vulnerabilities in the passport-azure-ad package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
passport-azure-ad is an OIDC and Bearer Passport strategies for Azure Active Directory. Affected versions of this package are vulnerable to Denial of Service (DoS). If the Authorization header is formed as: How to fix Denial of Service (DoS)? Upgrade | <4.3.0 |
How to fix Authentication Bypass? Upgrade | >=1.0.0 <1.4.6>=2.0.0 <2.0.1 |