korzio / djv

Dynamic JSON Schema Validator - Supports draft-04/06
https://www.npmjs.com/package/djv
MIT License
289 stars 31 forks source link

avoid injected code execution #98

Closed korzio closed 3 years ago

abergmann commented 3 years ago

CVE-2020-28464 was assigned to commit 48fe954.

Base Score: 9.8 CRITICAL Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H