kind-of@6.0.2 vulnerabilities

Get the native type of a value.

Direct Vulnerabilities

Known vulnerabilities in the kind-of package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • L
Validation Bypass

kind-of is a package that gets the native type of a value.

Affected versions of this package are vulnerable to Validation Bypass. It leverages the built-in constructor of unsafe user-input to detect type information. However, a crafted payload can overwrite this built in attribute to manipulate the type detection result.

How to fix Validation Bypass?

Upgrade kind-of to version 6.0.3 or higher.

>=6.0.0 <6.0.3