prism is vulnerable to Improper Input Validation
52
Medium Risk
Affected versions of the package are vulnerable to improper input validation. When using recursive descent, the package does not impose a maximum recursion depth, making it susceptible to malicious payloads that could attempt to crash the parser by causing excessive recursion.
You are affected if you are using a version that falls within the vulnerable range.
prism is vulnerable to Improper Input Validation in versions 0.7.0 - 1.0.0.
Upgrade the prism library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant