Vulnerability library
Security checkApril 22, 2024

deep-defaults vulnerable to prototype pollution

Understand the exposure, see the recommended fix, and check whether your own website has related weaknesses.

High severitynpmdeep-defaults

Check your website

Find this and other vulnerabilities with a free scan.

Your scan runs on your computer. No account required.

Description

Prototype pollution vulnerability in ‘deep-defaults’ versions 1.0.0 through 1.0.5 allows attacker to cause a denial of service and may lead to remote code execution.

Recommendation

No fix is available yet. Followings are affected versions:

  • >= 1.0.0, <= 1.0.5

References

Could your website be exposed too?

SmartScanner can check your website for deep-defaults vulnerable to prototype pollution and gives you actionable findings to investigate.

Start a free scan

Related Issues

See something that needs correcting? Let us knowUpdated April 22, 2024