NodeJS/ajv/2.2.1


Another JSON Schema Validator

https://www.npmjs.com/package/ajv
MIT

1 Security Vulnerabilities

Prototype Pollution in Ajv

Published date: 2022-02-10T23:30:59Z
CVE: CVE-2020-15366
Links:

An issue was discovered in ajv.validate() in Ajv (aka Another JSON Schema Validator) 6.12.2. A carefully crafted JSON schema could be provided that allows execution of other code by prototype pollution. (While untrusted schemas are recommended against, the worst case of an untrusted schema should be a denial of service, not execution of code.)

Affected versions: ["0.0.4", "0.0.5", "0.0.6", "0.0.7", "0.0.8", "0.0.9", "0.0.10", "0.0.11", "0.0.12", "0.1.0", "0.1.1", "0.1.2", "0.1.3", "0.1.4", "0.1.5", "0.1.6", "0.1.7", "0.1.8", "0.1.9", "0.1.10", "0.1.11", "0.1.12", "0.1.13", "0.1.14", "0.1.15", "0.1.16", "0.2.0", "0.2.1", "0.2.2", "0.2.3", "0.2.4", "0.2.5", "0.2.6", "0.2.7", "0.2.8", "0.2.9", "0.3.0", "0.3.1", "0.3.2", "0.3.3", "0.3.4", "0.3.5", "0.3.6", "0.3.7", "0.3.8", "0.3.11", "0.3.12", "0.4.0", "0.4.1", "0.4.2", "0.4.3", "0.4.4", "0.4.5", "0.4.6", "0.4.7", "0.4.8", "0.4.9", "0.4.10", "0.4.12", "0.4.14", "0.4.15", "0.5.0", "0.5.2", "0.5.3", "0.5.4", "0.5.5", "0.5.6", "0.5.7", "0.5.8", "0.5.9", "0.5.10", "0.5.11", "0.5.12", "0.6.0", "0.6.1", "0.6.2", "0.6.3", "0.6.4", "0.6.5", "0.6.6", "0.6.7", "0.6.8", "0.6.9", "0.6.10", "0.6.11", "0.6.12", "0.6.13", "0.6.14", "0.6.15", "0.7.0", "0.7.1", "0.7.2", "1.0.0", "1.0.1", "1.1.1", "1.2.0", "1.2.1", "1.3.0", "1.3.1", "1.3.2", "1.4.0", "1.4.1", "1.4.2", "1.4.3", "1.4.4", "1.4.5", "1.4.6", "1.4.7", "1.4.8", "1.4.9", "2.0.0-beta.0", "2.0.0-beta.1", "1.4.10", "2.0.0-beta.2", "2.0.0-beta.3", "2.0.0", "2.0.1", "2.0.2", "2.0.3", "2.0.4", "2.1.0", "2.1.2", "2.1.3", "2.1.4", "2.2.0", "2.2.1", "2.2.2", "2.3.0", "2.4.0", "2.5.0", "3.0.0", "3.0.1", "3.0.2", "3.0.3", "3.0.4", "3.1.0", "3.1.1", "3.2.0", "3.2.1", "3.2.2", "3.2.3", "3.3.0", "3.3.1", "3.4.0", "3.5.0", "3.5.1", "3.5.2", "3.5.3", "3.6.0", "3.6.1", "3.6.2", "3.7.0", "3.7.1", "3.7.2", "3.8.0", "3.8.1", "3.8.2", "3.8.3", "3.8.4", "3.8.5", "3.8.6", "3.8.7", "3.8.8", "3.8.9", "3.8.10", "4.0.0", "4.0.1", "4.0.2", "4.0.3", "4.0.4", "4.0.5", "4.0.6", "4.1.0", "4.1.1", "4.1.2", "4.1.3", "4.1.4", "4.1.5", "4.1.6", "4.1.7", "4.1.8", "4.2.0", "4.3.0", "4.3.1", "4.4.0", "4.4.1", "4.5.0", "4.6.0", "4.6.1", "4.7.0", "4.7.1", "4.7.2", "4.7.3", "4.7.4", "4.7.5", "4.7.6", "4.7.7", "4.8.0", "4.8.1", "4.8.2", "5.0.0-beta.0", "4.9.0", "5.0.0-beta.1", "4.9.1", "4.9.2", "4.9.3", "4.10.0", "4.10.1", "4.10.2", "4.10.3", "5.0.1-beta.0", "4.10.4", "5.0.1-beta.1", "4.11.0", "4.11.1", "4.11.2", "5.0.1-beta.2", "5.0.1-beta.3", "4.11.3", "5.0.2-beta.0", "5.0.3-beta.0", "4.11.4", "4.11.5", "5.0.4-beta.0", "5.0.4-beta.1", "5.0.4-beta.2", "4.11.6", "5.0.4-beta.3", "4.11.7", "5.0.0", "4.11.8", "5.0.1", "5.1.0", "5.1.1", "5.1.2", "5.1.3", "5.1.4", "5.1.5", "5.1.6", "5.2.0", "5.2.1", "5.2.2", "5.2.3", "5.2.4", "5.2.5", "5.3.0", "6.0.0-beta.0", "6.0.0-beta.1", "6.0.0-beta.2", "5.4.0", "5.5.0", "6.0.0-rc.0", "5.5.1", "6.0.0-rc.1", "5.5.2", "6.0.0", "6.0.1", "6.1.0", "6.1.1", "6.2.0", "6.2.1", "6.3.0", "6.4.0", "6.5.0", "6.5.1", "6.5.2", "6.5.3", "6.5.4", "6.5.5", "6.6.0", "6.6.1", "6.6.2", "6.7.0", "6.8.0", "6.8.1", "6.9.0", "6.9.1", "6.9.2", "6.10.0", "6.10.1", "6.10.2", "6.11.0", "6.12.0", "6.12.1", "6.12.2"]
Secure versions: [6.12.3, 6.12.4, 6.12.5, 7.0.0-alpha.0, 7.0.0-alpha.1, 7.0.0-beta.0, 6.12.6, 7.0.0-beta.1, 7.0.0-beta.2, 7.0.0-beta.3, 7.0.0-beta.4, 7.0.0-beta.5, 7.0.0-beta.6, 7.0.0-beta.7, 7.0.0-beta.8, 7.0.0-beta.9, 7.0.0-rc.0, 7.0.0-rc.1, 7.0.0-rc.2, 7.0.0-rc.3, 7.0.0-rc.4, 7.0.0-rc.5, 7.0.0, 7.0.1, 7.0.2, 7.0.3, 7.0.4, 7.1.0, 7.1.1, 7.2.0, 7.2.1, 8.0.0-beta.0, 8.0.0-beta.1, 8.0.0-beta.2, 7.2.2, 7.2.3, 8.0.0-beta.3, 8.0.0-beta.4, 7.2.4, 8.0.0, 8.0.1, 8.0.2, 8.0.3, 8.0.4, 8.0.5, 8.1.0, 8.2.0, 8.3.0, 8.4.0, 8.5.0, 8.6.0, 8.6.1, 8.6.2, 8.6.3, 8.7.0, 8.7.1, 8.8.0, 8.8.1, 8.8.2, 8.9.0, 8.10.0, 8.11.0, 8.11.1, 8.11.2, 8.12.0, 8.13.0, 8.14.0, 8.15.0, 8.16.0, 8.17.1]
Recommendation: Update to version 8.17.1.

355 Other Versions

Version License Security Released
8.17.1 MIT 2024-07-12 - 20:42 3 months
8.16.0 MIT 2024-06-04 - 19:11 4 months
8.15.0 MIT 2024-06-03 - 20:36 4 months
8.14.0 MIT 2024-05-25 - 22:02 4 months
8.13.0 MIT 2024-04-29 - 23:33 5 months
8.12.0 MIT 2023-01-03 - 14:19 almost 2 years
8.11.2 MIT 2022-11-13 - 22:16 almost 2 years
8.11.1 MIT 2022-11-13 - 22:05 almost 2 years
8.11.0 MIT 2022-03-22 - 22:19 over 2 years
8.10.0 MIT 2022-02-04 - 18:22 over 2 years
8.9.0 MIT 2022-01-15 - 13:01 over 2 years
8.8.2 MIT 2021-11-21 - 19:07 almost 3 years
8.8.1 MIT 2021-11-16 - 20:20 almost 3 years
8.8.0 MIT 2021-11-13 - 18:33 almost 3 years
8.7.1 MIT 2021-11-08 - 21:12 almost 3 years
8.7.0 MIT 2021-11-08 - 20:15 almost 3 years
8.6.3 MIT 2021-09-12 - 18:20 about 3 years
8.6.2 MIT 2021-07-15 - 20:13 about 3 years
8.6.1 MIT 2021-07-04 - 09:53 over 3 years
8.6.0 MIT 2021-06-06 - 14:57 over 3 years
8.5.0 MIT 2021-05-20 - 13:33 over 3 years
8.4.0 MIT 2021-05-14 - 20:12 over 3 years
8.3.0 MIT 2021-05-09 - 11:34 over 3 years
8.2.0 MIT 2021-04-27 - 15:08 over 3 years
8.1.0 MIT 2021-04-11 - 16:52 over 3 years
8.0.5 MIT 2021-04-02 - 15:54 over 3 years
8.0.4 MIT 2021-04-02 - 12:53 over 3 years
8.0.3 MIT 2021-04-01 - 07:04 over 3 years
8.0.2 MIT 2021-03-31 - 08:00 over 3 years
8.0.1 MIT 2021-03-27 - 22:47 over 3 years
8.0.0 MIT 2021-03-27 - 12:44 over 3 years
8.0.0-beta.4 MIT 2021-03-23 - 07:37 over 3 years
8.0.0-beta.3 MIT 2021-03-21 - 18:44 over 3 years
8.0.0-beta.2 MIT 2021-03-16 - 20:22 over 3 years
8.0.0-beta.1 MIT 2021-03-15 - 07:56 over 3 years
8.0.0-beta.0 MIT 2021-03-13 - 11:08 over 3 years
7.2.4 MIT 2021-03-26 - 08:19 over 3 years
7.2.3 MIT 2021-03-20 - 07:01 over 3 years
7.2.2 MIT 2021-03-20 - 06:43 over 3 years
7.2.1 MIT 2021-03-07 - 19:03 over 3 years
7.2.0 MIT 2021-03-07 - 10:00 over 3 years
7.1.1 MIT 2021-02-17 - 09:09 over 3 years
7.1.0 MIT 2021-02-11 - 08:42 over 3 years
7.0.4 MIT 2021-02-01 - 21:04 over 3 years
7.0.3 MIT 2021-01-02 - 11:09 almost 4 years
7.0.2 MIT 2020-12-19 - 18:42 almost 4 years
7.0.1 MIT 2020-12-16 - 19:42 almost 4 years
7.0.0 MIT 2020-12-15 - 19:12 almost 4 years
7.0.0-rc.5 MIT 2020-12-14 - 20:08 almost 4 years
7.0.0-rc.4 MIT 2020-12-14 - 19:34 almost 4 years
7.0.0-rc.3 MIT 2020-12-14 - 19:11 almost 4 years
7.0.0-rc.2 MIT 2020-12-13 - 19:37 almost 4 years
7.0.0-rc.1 MIT 2020-12-09 - 20:49 almost 4 years
7.0.0-rc.0 MIT 2020-12-06 - 15:39 almost 4 years
7.0.0-beta.9 MIT 2020-12-02 - 08:18 almost 4 years
7.0.0-beta.8 MIT 2020-11-29 - 19:31 almost 4 years
7.0.0-beta.7 MIT 2020-11-22 - 11:37 almost 4 years
7.0.0-beta.6 MIT 2020-11-16 - 22:01 almost 4 years
7.0.0-beta.5 MIT 2020-11-15 - 16:52 almost 4 years
7.0.0-beta.4 MIT 2020-11-10 - 08:25 almost 4 years
7.0.0-beta.3 MIT 2020-11-05 - 08:18 almost 4 years
7.0.0-beta.2 MIT 2020-10-24 - 18:14 almost 4 years
7.0.0-beta.1 MIT 2020-10-10 - 18:14 almost 4 years
7.0.0-beta.0 MIT 2020-09-23 - 19:16 about 4 years
7.0.0-alpha.1 MIT 2020-09-16 - 13:40 about 4 years
7.0.0-alpha.0 MIT 2020-09-15 - 14:58 about 4 years
6.12.6 MIT 2020-10-10 - 17:01 almost 4 years
6.12.5 MIT 2020-09-13 - 16:23 about 4 years
6.12.4 MIT 2020-08-15 - 09:07 about 4 years
6.12.3 MIT 2020-07-04 - 16:02 over 4 years
6.12.2 MIT 1 2020-04-19 - 23:18 over 4 years
6.12.1 MIT 1 2020-04-18 - 19:38 over 4 years
6.12.0 MIT 1 2020-02-22 - 13:51 over 4 years
6.11.0 MIT 1 2020-01-18 - 09:11 over 4 years
6.10.2 MIT 1 2019-07-14 - 14:16 about 5 years
6.10.1 MIT 1 2019-07-06 - 18:15 about 5 years
6.10.0 MIT 1 2019-03-03 - 11:27 over 5 years
6.9.2 MIT 1 2019-02-22 - 20:16 over 5 years
6.9.1 MIT 1 2019-02-10 - 08:42 over 5 years
6.9.0 MIT 1 2019-02-09 - 22:22 over 5 years
6.8.1 MIT 1 2019-02-02 - 20:07 over 5 years
6.8.0 MIT 1 2019-02-02 - 20:04 over 5 years
6.7.0 MIT 1 2019-01-13 - 17:59 over 5 years
6.6.2 MIT 1 2018-12-16 - 21:10 almost 6 years
6.6.1 MIT 1 2018-11-29 - 10:59 almost 6 years
6.6.0 MIT 1 2018-11-29 - 07:22 almost 6 years
6.5.5 MIT 1 2018-11-04 - 21:47 almost 6 years
6.5.4 MIT 1 2018-09-23 - 11:04 about 6 years
6.5.3 MIT 1 2018-08-17 - 16:28 about 6 years
6.5.2 MIT 1 2018-06-30 - 18:57 over 6 years
6.5.1 MIT 1 2018-06-10 - 12:07 over 6 years
6.5.0 MIT 1 2018-05-08 - 20:49 over 6 years
6.4.0 MIT 1 2018-03-25 - 10:37 over 6 years
6.3.0 MIT 1 2018-03-17 - 19:53 over 6 years
6.2.1 MIT 1 2018-03-03 - 21:22 over 6 years
6.2.0 MIT 1 2018-02-26 - 08:23 over 6 years
6.1.1 MIT 1 2018-01-30 - 19:43 over 6 years
6.1.0 MIT 1 2018-01-26 - 19:08 over 6 years
6.0.1 MIT 1 2018-01-11 - 22:04 over 6 years
6.0.0 MIT 1 2018-01-07 - 15:32 over 6 years