Lucene search

K
osvGoogleOSV:GHSA-R24H-634P-M72X
HistoryJun 10, 2020 - 8:02 p.m.

Validation Bypass in schema-inspector

2020-06-1020:02:47
Google
osv.dev
4

0.002 Low

EPSS

Percentile

61.8%

In schema-inspector before 1.6.9, a maliciously crafted JavaScript object can bypass the sanitize() and the validate() function used within schema-inspector.

CPENameOperatorVersion
schema-inspectorlt1.6.9

0.002 Low

EPSS

Percentile

61.8%