feast is vulnerable to Improper Access Control
66
Medium Risk
Affected versions of this package are vulnerable to improper access control when no permissions are defined, because the system does not reliably deny access to all resources by default. This could result in unintended permission grants or inconsistent enforcement of authorization policies when a permission list is empty. The pull request fixes this by enforcing a default deny-all behavior for resources with no permissions configured, ensuring that unauthorized access is not permitted in the absence of explicit allow rules.
You are affected if you are using a version that falls within the vulnerable range.
feast is vulnerable to Improper Access Control in versions 0.0.1 - 0.58.0.
Upgrade the feast library to a patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant