Vulnerabilities

1 via 1 paths

Dependencies

64

Source

GitHub

Commit

0b897df0

Find, fix and prevent vulnerabilities in your code.

Severity
  • 1
Status
  • 1
  • 0
  • 0

low severity
new

Improper Validation of Syntactic Correctness of Input

  • Vulnerable module: aws-sdk
  • Introduced through: aws-sdk@2.1693.0

Detailed paths

  • Introduced through: power-sqs@singhs020/power-sqs#0b897df037137937cfd989e28461d77779f460e5 aws-sdk@2.1693.0

Overview

Affected versions of this package are vulnerable to Improper Validation of Syntactic Correctness of Input in the region input field. An attacker can cause AWS API calls to be routed to unintended or non-existent hosts by supplying an invalid value to this parameter.

##Workaround

This vulnerability can be mitigated by implementing proper input sanitization in application code or migrating to AWS SDK for JavaScript v3.

Remediation

There is no fixed version for aws-sdk.