plug vulnerabilities

Continuously find & fix vulnerabilities like these in your dependencies. Test and protect your applications

Direct Vulnerabilities

Known vulnerabilities in the plug package. This does not include vulnerabilities belonging to this package’s dependencies.

Report new vulnerabilities
Vulnerability Vulnerable versions Snyk patch Published
  • H
Improper Input Validation
>=1.3.0 <1.3.2,>=1.2.0-rc.0 <1.2.3,>=1.1.0 <1.1.7,<1.0.4 Not available 30 Mar, 2021
  • M
HTTP Header Injection
>=1.3.0 <1.3.5,>=1.2.0-rc.0 <1.2.5,>=1.1.0 <1.1.9,<1.0.6 Not available 30 Mar, 2021
  • H
Arbitrary Code Execution
>=1.3.0 <1.3.2,>=1.2.0-rc.0 <1.2.3,>=1.1.0 <1.1.7,<1.0.4 Not available 30 Mar, 2021