Vulnerabilities/

progressbar.js vulnerable to Prototype Pollution

Severity:
High

Description

All versions of the package progressbar.js prior to 1.1.1 are vulnerable to Prototype Pollution via the function extend() in the file utils.js.

Recommendation

Update the progressbar.js package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
progressbar.js
Anything's wrong? Let us know Last updated on November 04, 2023