Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Fix] class-validator 취약점 #133

Open
ykoh42 opened this issue Oct 19, 2021 · 1 comment
Open

[Fix] class-validator 취약점 #133

ykoh42 opened this issue Oct 19, 2021 · 1 comment
Labels
bug Something isn't working icebox To do later

Comments

@ykoh42
Copy link
Member

ykoh42 commented Oct 19, 2021

문제점

class-validator 취약점이 보고 되어 해결해야할것같아요.
sql injection xss 관련 취약점이라고하네요.
GHSA-fj58-h2fr-3pp2

예상되는(제대로 된) 동작

패키지가 보통 취약점보고되면 해결해서 업데이트되는데 class-validator는 아직 업데이트되지않아서 직접 해결해야할것같아요

해결 방법 (optional)

typestack/class-validator#438

@ykoh42 ykoh42 added the bug Something isn't working label Oct 19, 2021
@ykoh42
Copy link
Member Author

ykoh42 commented Dec 18, 2021

nestjs/nest#8562

@ykoh42 ykoh42 added the icebox To do later label Dec 23, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working icebox To do later
Projects
None yet
Development

No branches or pull requests

1 participant