Vulnerabilities

1 via 1 paths

Dependencies

64

Source

GitHub

Commit

d430c31c

Find, fix and prevent vulnerabilities in your code.

Severity
  • 1
Status
  • 1
  • 0
  • 0

medium severity
new

Open Redirect

  • Vulnerable module: koa
  • Introduced through: koa@2.16.2

Detailed paths

  • Introduced through: inversify-koa-utils@diego-d5000/inversify-koa-utils#d430c31c4393c27dcba6e02a4f6e873354cc1697 koa@2.16.2

Overview

koa is a Koa web app framework

Affected versions of this package are vulnerable to Open Redirect via the redirect function in lib/response.js due to improper input sanitization. An attacker can redirect users to arbitrary external sites by exploiting this vulnerability.

Remediation

A fix was pushed into the master branch but not yet published.

References