Medium severity6.5NVD Advisory· Published Feb 16, 2022· Updated Jun 17, 2026
CVE-2022-0613
CVE-2022-0613
Description
Authorization Bypass Through User-Controlled Key in NPM urijs prior to 1.19.8.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
urijsnpm | < 1.19.8 | 1.19.8 |
Affected products
4- cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
- medialize/medialize/uri.jsv5Range: unspecified
Patches
Vulnerability mechanics
References
6- github.com/medialize/uri.js/commit/6ea641cc8648b025ed5f30b090c2abd4d1a5249fnvdPatchThird Party AdvisoryWEB
- huntr.dev/bounties/f53d5c42-c108-40b8-917d-9dad51535083nvdExploitIssue TrackingPatchThird Party AdvisoryWEB
- github.com/advisories/GHSA-gcv8-gh4r-25x6ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2022-0613ghsaADVISORY
- lists.fedoraproject.org/archives/list/[email protected]/message/MXSSATHALUSXXD2KT6UFZAX7EG4GR332ghsaWEB
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MXSSATHALUSXXD2KT6UFZAX7EG4GR332/nvd
News mentions
0No linked articles in our index yet.