nuxt-api-party
npm2 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting nuxt-api-partypage 1 of 1
- CVE-2023-49799HIGHCVSS 7.5EG 7.5✓ Fixed in 0.22.02023-12-09
`nuxt-api-party` is an open source module to proxy API requests. nuxt-api-party attempts to check if the user has passed an absolute URL to prevent the aforementioned attack. This has been recently changed to use the regular expression `^h…
- CVE-2023-49800HIGHCVSS 7.5EG 7.5✓ Fixed in 0.22.12023-12-09
`nuxt-api-party` is an open source module to proxy API requests. The library allows the user to send many options directly to `ofetch`. There is no filter on which options are available. We can abuse the retry logic to cause the server to …
Check whether nuxt-api-party is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for nuxt-api-party CVEs against the assets you own.
Start Free Scan →