Vulnerabilities

1 via 1 paths

Dependencies

49

Source

GitHub

Commit

e3537058

Find, fix and prevent vulnerabilities in your code.

Severity
  • 1
Status
  • 1
  • 0
  • 0

low severity
new

Improper Validation of Syntactic Correctness of Input

  • Vulnerable module: aws-sdk
  • Introduced through: aws-sdk@2.1693.0

Detailed paths

  • Introduced through: greenlock-challenge-s3@cderche/greenlock-challenge-s3#e353705873060364b8c7a7bc682eb8523d9d81d4 aws-sdk@2.1693.0

Overview

Affected versions of this package are vulnerable to Improper Validation of Syntactic Correctness of Input in the region input field. An attacker can cause AWS API calls to be routed to unintended or non-existent hosts by supplying an invalid value to this parameter.

##Workaround

This vulnerability can be mitigated by implementing proper input sanitization in application code or migrating to AWS SDK for JavaScript v3.

Remediation

There is no fixed version for aws-sdk.