GHSA-69rh-hccr-cxrj
MODERATECVE-2025-48490A validation bypass vulnerability was discovered prior to version 2.13.0, where multiple validations defined for the same attribute could be silently overridden. Due to how the framework merged validation rules across multiple contexts (such as index, store, and update actions), malicious actors could exploit this behavior by crafting requests that bypass expected validation rules, potentially in
- Affected
- < 2.13.0
- Fixed in
- 2.13.0
- Weakness
- CWE-20
- Published
- 2025-05-27
- Source
- github