Vulnerabilities/

Improperly Controlled Modification of Dynamically-Determined Object Attributes in utilitify

Severity:
High

Description

utilitify prior to 1.0.3 allows modification of object properties. The merge method could be tricked into adding or modifying properties of the Object.prototype.

Recommendation

Update the utilitify package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
utilitify
Anything's wrong? Let us know Last updated on January 27, 2023