Description
All versions of package is-user-valid are vulnerable to LDAP Injection which can lead to either authentication bypass or information exposure.
Remediation
References
https://snyk.io/vuln/SNYK-JS-ISUSERVALID-1056766
Related Vulnerabilities
CVE-2023-36479 Vulnerability in maven package org.eclipse.jetty:jetty-servlets
CVE-2023-34603 Vulnerability in maven package org.jeecgframework.boot:jeecg-boot-parent
CVE-2020-26226 Vulnerability in npm package semantic-release
CVE-2020-11022 Vulnerability in maven package org.webjars:jquery
CVE-2022-23059 Vulnerability in maven package com.shopizer:sm-shop-model