You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Synk.io is reporting Vulnerability for this library, One of the dependence library saml@1.0.0 uses xmldom which has Vulnerability.
and also Arbitrary Code Injection from package ejs@3.1.6
Solution: update dependence library saml@1.0.0 to 1.0.1 which is using the latest version of xmldom@0.7.4 and also update ejs@2.5.5 to ejs@3.1.6
The text was updated successfully, but these errors were encountered:
kanxoramesh
changed the title
Found Vulnerability ' Improper Input Validation ' and ' Prototype Pollution '
Found Vulnerability ' Improper Input Validation ' and ' Prototype Pollution ' on Sunk.io
Oct 28, 2021
kanxoramesh
changed the title
Found Vulnerability ' Improper Input Validation ' and ' Prototype Pollution ' on Sunk.io
Found Vulnerability ' Improper Input Validation ' and ' Prototype Pollution ' on Synk.io
Oct 28, 2021
BUG
Synk.io is reporting Vulnerability for this library, One of the dependence library
saml@1.0.0
usesxmldom
which has Vulnerability.and also
Arbitrary Code Injection
from packageejs@3.1.6
Solution: update dependence library
saml@1.0.0
to1.0.1
which is using the latest version ofxmldom@0.7.4
and also updateejs@2.5.5
toejs@3.1.6
The text was updated successfully, but these errors were encountered: