@hono/arktype-validator is vulnerable to Generation of Error Message Containing Sensitive Information
15
Low Risk
Affected versions of this package may unintentionally leak restricted or sensitive data fields in error responses. When an operation fails, instead of properly sanitizing or omitting protected fields, the application includes them in the returned error message. An attacker could exploit this behavior to gain access to confidential information.
You are affected if you are using a version which is within vulnerability ranges.
@hono/arktype-validator is vulnerable to Generation of Error Message Containing Sensitive Information in versions 1.0.0 - 2.0.0.
Upgrade the @hono/arktype-validator library to the patch version.
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant