json-pointer
npm3 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting json-pointerpage 1 of 1
- CVE-2020-7709MEDIUMCVSS 6.0EG 6.0✓ Fixed in 0.6.12020-10-05
This affects the package json-pointer before 0.6.1. Multiple reference of object using slash is supported.
- CVE-2021-23820MEDIUMCVSS 5.6EG 5.6✓ Fixed in 0.6.22021-11-03
This affects all versions of package json-pointer. A type confusion vulnerability can lead to a bypass of CVE-2020-7709 when the pointer components are arrays.
- CVE-2022-4742MEDIUMCVSS 6.3EG 6.3✓ Fixed in 0.6.22022-12-26
A vulnerability, which was classified as critical, has been found in json-pointer up to 0.6.1. Affected by this issue is the function set of the file index.js. The manipulation leads to improperly controlled modification of object prototyp…
Check whether json-pointer is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for json-pointer CVEs against the assets you own.
Start Free Scan →