Description
All versions of package is-user-valid are vulnerable to LDAP Injection which can lead to either authentication bypass or information exposure.
Remediation
References
https://snyk.io/vuln/SNYK-JS-ISUSERVALID-1056766
Related Vulnerabilities
CVE-2023-48711 Vulnerability in npm package google-translate-api-browser
CVE-2020-7696 Vulnerability in npm package react-native-fast-image
CVE-2021-21351 Vulnerability in maven package com.thoughtworks.xstream:xstream
CVE-2022-47105 Vulnerability in maven package org.jeecgframework.boot:jeecg-boot-base-core