QID 981569
QID 981569: Nodejs (npm) Security Update for kind-of (GHSA-6c8f-qphg-qjgp)
Versions of `kind-of` 6.x prior to 6.0.3 are vulnerable to a Validation Bypass. A maliciously crafted object can alter the result of the type check, allowing attackers to bypass the type checking validation.
## Recommendation
Upgrade to versions 6.0.3 or later.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-6c8f-qphg-qjgp for updates pertaining to this vulnerability.
Vendor References
- GHSA-6c8f-qphg-qjgp -
github.com/advisories/GHSA-6c8f-qphg-qjgp
CVEs related to QID 981569
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-6c8f-qphg-qjgp | kind-of |
|