Vulnerabilities/

json-pointer vulnerable to Prototype Pollution

Severity:
High

Description

A vulnerability, which was classified as critical, has been found in json-pointer up to 0.6.1. Affected by this issue is the function set of the file index.js. The manipulation leads to improperly controlled modification of object prototype attributes (‘prototype pollution’). The attack may be launched remotely. Upgrading to version 0.6.

Recommendation

Update the json-pointer package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
json-pointer
Anything's wrong? Let us know Last updated on April 04, 2024