Vulnerabilities/

Prototype Pollution in backbone-query-parameters

Severity:
High

Description

Improperly Controlled Modification of Object Prototype Attributes (‘Prototype Pollution’) in backbone-query-parameters 0.4.0 allows a malicious user to inject properties into Object.prototype.

Recommendation

No fix is available yet. Followings are affected versions:

References

Related Issues

Tags:
npm
backbone-query-parameters
Anything's wrong? Let us know Last updated on August 08, 2023