parse-server is vulnerable to Improper Input Validation
85
High Risk
Versions of this package impacted by this issue are vulnerable due to inadequate input validation for Cloud Function and Cloud Job names. Exploiting this flaw allows an attacker to trigger a Denial of Service or execute arbitrary code by sending a specially crafted request.
You are affected if you are using a version that falls within the vulnerable range.
parse-server is vulnerable to Improper Input Validation in versions 3.0.0 - 6.5.4.
Upgrade the parse-server library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant