sindresorhus / normalize-url

Normalize a URL
MIT License
837 stars 123 forks source link

🚨 Potential Security Vulnerability #151

Closed x3rz closed 3 years ago

x3rz commented 3 years ago

Hello developers, I found two security vulnerability in your project that I reported a month ago and it still exists in the project. You can find the report here. These are the confidential reports that maintainers and researchers respectively can see with attached proper POC and steps to reproduce. Please visit, fix and validate

Regards x3rz

sindresorhus commented 3 years ago

I did receive the report, but the Huntr website was broken for a long time, so I was unable to access the report. I was able to access it now and responded.