In schema-inspector before 1.6.9, a maliciously crafted JavaScript object can bypass the `sanitize()` and the `validate()` function used within schema-inspector.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| schema-inspector(npm) | 0 | 1.6.9 | N/A |
CVSS Metrics