View all vulnerabilities

CVE-2020-8124

Improper Validation and Sanitization in url-parse

Insufficient validation and sanitization of user input exists in url-parse npm package version 1.4.4 and earlier may allow attacker to bypass security checks.

Patch Available

Fix available through Seal Security. No upgrade required, protect your application instantly.

Fix without upgrading
Vulnerability Details
Score
5.3
Score Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Affected Versions
url-parse < 1.4.5
Severity
Medium
Ecosystem
JavaScript
Publish Date
January 6, 2022
Modified Date
November 7, 2023