EPSS
Percentile
54.6%
url-parse performs Insecure URL Validation. The vulnerability exists as the unsanitized value of address in index.js could be used to bypass validation checks when used in the browser.
address
index.js
advisory.checkmarx.net/advisory/CX-2021-4306
github.com/unshiftio/url-parse/commit/d1e7e8822f26e8a49794b757123b51386325b2b0
github.com/unshiftio/url-parse/compare/1.4.7...1.5.0
github.com/unshiftio/url-parse/pull/197