Vulnerabilities/

Baobab vulnerable to Prototype Pollution

Severity:
High

Description

A vulnerability was found in Yomguithereal Baobab up to 2.6.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to improperly controlled modification of object prototype attributes (‘prototype pollution’). The attack can be launched remotely. Upgrading to version 2.6.

Recommendation

Update the baobab package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
baobab
Anything's wrong? Let us know Last updated on October 20, 2023

This issue is available in SmartScanner Professional

See Pricing