Validation Bypass in kind-of
High severity
GitHub Reviewed
Published
Mar 31, 2020
to the GitHub Advisory Database
•
Updated Nov 29, 2023
Description
Reviewed
Mar 31, 2020
Published to the GitHub Advisory Database
Mar 31, 2020
Last updated
Nov 29, 2023
Versions of
kind-of
6.x prior to 6.0.3 are vulnerable to a Validation Bypass. A maliciously crafted object can alter the result of the type check, allowing attackers to bypass the type checking validation.Recommendation
Upgrade to versions 6.0.3 or later.
References