High severity8.1NVD Advisory· Published Feb 7, 2022· Updated Jun 17, 2026
CVE-2022-23623
CVE-2022-23623
Description
Frourio is a full stack framework, for TypeScript. Frourio users who uses frourio version prior to v0.26.0 and integration with class-validator through validators/ folder are subject to a input validation vulnerability. Validators do not work properly for request bodies and queries in specific situations and some input is not validated at all. Users are advised to update frourio to v0.26.0 or later and to install class-transformer and reflect-metadata.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
frourionpm | < 0.26.0 | 0.26.0 |
Affected products
3Patches
Vulnerability mechanics
References
4- github.com/frouriojs/frourio/commit/7c19ac5363305b81b1c6b5232620228763d427afnvdPatchThird Party AdvisoryWEB
- github.com/advisories/GHSA-8xxm-h73r-ghfjghsaADVISORY
- github.com/frouriojs/frourio/security/advisories/GHSA-8xxm-h73r-ghfjnvdThird Party AdvisoryWEB
- nvd.nist.gov/vuln/detail/CVE-2022-23623ghsaADVISORY
News mentions
0No linked articles in our index yet.