Vulnerabilities/

deep-defaults vulnerable to prototype pollution

Severity:
High

Description

Prototype pollution vulnerability in ‘deep-defaults’ versions 1.0.0 through 1.0.5 allows attacker to cause a denial of service and may lead to remote code execution.

Recommendation

No fix is available yet. Followings are affected versions:

References

Related Issues

Tags:
npm
deep-defaults
Anything's wrong? Let us know Last updated on April 22, 2024