hrflow-connectors@3.1.1 vulnerabilities

hrflow-connectors is an open source project created by HrFlow.ai to allow developers to connect easily HR ecosystem component.

  • latest version

    4.27.0

  • latest non vulnerable version

  • first published

    3 years ago

  • latest version published

    12 hours ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the hrflow-connectors package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • L
    Race Condition

    hrflow-connectors is a hrflow-connectors is an open source project created by HrFlow.ai to allow developers to connect easily HR ecosystem component.

    Affected versions of this package are vulnerable to Race Condition due to backend tests in CI environments. This appears to arise when multiple CI runs occur simultaneously. These may cause one test to inadvertently find the result of another test running at the same time, thereby compromising the integrity of the tests.

    How to fix Race Condition?

    Upgrade hrflow-connectors to version 4.1.0 or higher.

    [,4.1.0)