@backstage/plugin-catalog-backend is vulnerable to Information Disclosure
20
Low Risk
Affected versions of @backstage/plugin-catalog-backend expose sensitive information through verbose error messages.
You are affected if you use a vulnerable version of @backstage/plugin-catalog-backend.
@backstage/plugin-catalog-backend is vulnerable to Information Disclosure in versions 0.1.1 - 1.22.0.
Upgrade @backstage/plugin-catalog-backend to a patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant