clevertap-web-sdk is vulnerable to Improper Input Validation
55
Medium Risk
Affected versions of this package are vulnerable due to insufficient input validation in multiple parts of the codebase, particularly when parsing JSON data for cookies or localStorage entries such as GUID, session, backups, or inbox. Because these values are processed without proper validation or sanitization, an attacker can supply malformed or malicious JSON that triggers unexpected behavior, potentially leading to data corruption, application errors, or further exploitation depending on how the parsed data is used.
You are affected if you are using a version that falls within the vulnerable range.
clevertap-web-sdk is vulnerable to Improper Input Validation in versions 1.0.0 - 2.3.1.
Upgrade the clevertap-web-sdk library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant