Description
All versions of package is-user-valid are vulnerable to LDAP Injection which can lead to either authentication bypass or information exposure.
Remediation
References
https://snyk.io/vuln/SNYK-JS-ISUSERVALID-1056766
Related Vulnerabilities
CVE-2019-6283 Vulnerability in npm package node-sass
CVE-2021-33360 Vulnerability in npm package @stoqey/gnuplot
CVE-2020-7690 Vulnerability in maven package org.webjars:jspdf
CVE-2019-20365 Vulnerability in maven package org.igniterealtime.openfire:xmppserver
CVE-2018-20677 Vulnerability in maven package org.webjars:bootstrap-sass