Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-jf5r-8hm2-f872
  • npm/url-parse
url-parse incorrectly parses hostname / protocol due to unstripped leading control characters. 22 Feb 2022
  • Fix available
  • Severity - 6.5 (Medium)
GHSA-hgjh-723h-mx2j
  • npm/url-parse
Authorization Bypass Through User-Controlled Key in url-parse 21 Feb 2022
  • Fix available
  • Severity - 9.1 (Critical)
GHSA-8v38-pw62-9cw2
  • npm/url-parse
url-parse Incorrectly parses URLs that include an '@' 18 Feb 2022
  • Fix available
  • Severity - 6.5 (Medium)
GHSA-rqff-837h-mm52
  • npm/url-parse
Authorization bypass in url-parse 15 Feb 2022
  • Fix available
  • Severity - 5.3 (Medium)
GHSA-46c4-8wrp-j99v
  • npm/url-parse
Improper Validation and Sanitization in url-parse 06 Jan 2022
  • Fix available
  • Severity - 5.3 (Medium)
GHSA-hh27-ffr2-f2jc
  • npm/url-parse
Open redirect in url-parse 10 Aug 2021
  • Fix available
  • Severity - 6.1 (Medium)
GHSA-9m6j-fcg5-2442
  • npm/url-parse
Path traversal in url-parse 06 May 2021
  • Fix available
  • Severity - 5.3 (Medium)
GHSA-pv4c-p2j5-38j4
  • npm/url-parse
Open Redirect in url-parse 13 Aug 2018
  • Fix available
  • Severity - 10.0 (Critical)