Vulnerabilities/

Prototype pollution in dojo - dojo

Severity:
High

Description

In affected versions of dojo (NPM package), the deepCopy method is vulnerable to Prototype Pollution.

Prototype Pollution refers to the ability to inject properties into existing JavaScript language construct prototypes, such as objects.

Recommendation

Update the dojo package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
dojo
Anything's wrong? Let us know Last updated on January 27, 2023