CVE-2022-0686
Published
CVSS v3
9.1
CRITICAL
CVSS v2
6.4
MEDIUM
Affected
1
PROJECT
Description
Authorization Bypass Through User-Controlled Key in NPM url-parse prior to 1.5.8.
Small footprint URL parser that works seamlessly across Node.js and browser environments.