In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade fiftyone to version 1.17.0 or higher.
fiftyone is a FiftyOne: the open-source tool for building high-quality datasets and computer vision models
Affected versions of this package are vulnerable to Permissive Cross-domain Policy with Untrusted Domains via the Access-Control-Allow-Origin header in the server response. An attacker can access sensitive local files by enticing a user to visit a malicious website while the server is running locally, enabling unauthorized cross-origin requests to endpoints such as /media that serve files from the local filesystem. This can result in the exposure of confidential data to an external attacker.