Known Vulnerabilities for Npm-user-validate by Npmjs
Listed below are 1 of the newest known vulnerabilities associated with "Npm-user-validate" by "Npmjs".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-88862 json | Capgo (capgo.app) backend through 12.242.4 does not validate parent-child delegation when processing the x-limited-key-id hea... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-86768 json | Snipe-IT before 8.7.0 fails to validate soft-deleted state in API checkout endpoints, allowing authenticated users with check... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-86750 json | Snipe-IT versions <= 8.6.3 (fixed in 8.7.0) do not validate company assignment authorization before persisting user records v... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-86540 json | knowns versions before 0.30.0 fail to validate the settings.lsp.languages binary field in project configuration files, allowi... | Not Provided | 2026-09-07 | 2026-09-08 |
| CVE-2026-86440 json | Affected versions of MISP insufficiently validate URLs used by dashboard widgets, particularly the Button widget. The widge... | Not Provided | 2026-09-07 | 2026-09-08 |
| CVE-2026-86351 json | Affected versions of MISP validate the user-configurable homepage by checking only whether the supplied path begins with /. T... | Not Provided | 2026-09-07 | 2026-09-08 |
| CVE-2026-86250 json | h3 versions before 2.0.1-rc.18 fail to validate the chunk count parsed from user-controlled cookie values in setChunkedCookie... | Not Provided | 2026-09-06 | 2026-09-06 |
| CVE-2026-86193 json | grav-plugin-api before 1.0.20 fails to validate group-inherited super permissions in user-management guards, allowing non-sup... | Not Provided | 2026-09-05 | 2026-09-08 |
| CVE-2026-86118 json | gonic versions before 0.22.0 fail to validate administrator privileges in the startScan endpoint, allowing any authenticated ... | Not Provided | 2026-09-05 | 2026-09-08 |
| CVE-2026-86112 json | BookWyrm through 0.9.1 fails to validate user visibility permissions in the Favorite and Unfavorite views, allowing authentic... | Not Provided | 2026-09-05 | 2026-09-10 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Npmjs | Npm-user-validate | 1.0.1 | |||
| Application | Npmjs | Npm-user-validate | 1.0.0 | |||
| Application | Npmjs | Npm-user-validate | 0.1.5 | |||
| Application | Npmjs | Npm-user-validate | 0.1.4 | |||
| Application | Npmjs | Npm-user-validate | 0.1.3 | |||
| Application | Npmjs | Npm-user-validate | 0.1.2 | |||
| Application | Npmjs | Npm-user-validate | 0.1.1 | |||
| Application | Npmjs | Npm-user-validate | 0.1.0 | |||
| Application | Npmjs | Npm-user-validate | 0.0.4 |