Vulnerabilities/

Prototype polluation in just-safe-set

Severity:
High

Description

Prototype pollution vulnerability in ‘just-safe-set’ versions 1.0.0 through 2.2.1 allows an attacker to cause a denial of service and may lead to remote code execution.

Recommendation

Update the just-safe-set package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
just-safe-set
Anything's wrong? Let us know Last updated on January 27, 2023

This issue is available in SmartScanner Professional

See Pricing