VYPR

npm package

mongodb-query-parser

pkg:npm/mongodb-query-parser

Vulnerabilities (1)

  • CVE-2020-24391Mar 30, 2021
    affected < 2.0.0fixed 2.0.0

    mongo-express before 1.0.0 offers support for certain advanced syntax but implements this in an unsafe way. NOTE: this may overlap CVE-2019-10769.