Vulnerabilities/

Blackprint @blackprint/engine Prototype Pollution issue

Severity:
High

Description

A Prototype Pollution issue in Blackprint @blackprint/engine 0.8.12 through 0.9.1 allows an attacker to execute arbitrary code via the _utils.setDeepProperty function of engine.min.js.

Recommendation

Update the @blackprint/engine package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
@blackprint/engine
Anything's wrong? Let us know Last updated on July 05, 2024

This issue is available in SmartScanner Professional

See Pricing