PT-2023-32980 · Unknown+1 · @Keystone-6+2
Published
2023-06-12
·
Updated
2023-06-12
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions
@keystone-6/* versions (affected versions not specified)
Description
The
cuid package is deprecated and marked as insecure by its author due to security concerns. It is recommended to use @paralleldrive/cuid2 instead. The issue affects @keystone-6/* and its upstream dependencies. There have been no reported real-world incidents of this issue being exploited.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
@Keystone-6
@Paralleldrive/Cuid2
Cuid