Description
Affected versions of immer are vulnerable to Prototype Pollution.
Recommendation
Update the immer package to the latest compatible version. Followings are version details:
- Affected version(s): >= 7.0.0, < 8.0.1
- Patched version(s): 8.0.1
References
Related Issues
- Prototype pollution in json-pointer - json-pointer - CVE-2020-7709
- Prototype pollution in pathval - CVE-2020-7751
- Prototype pollution in gsap - CVE-2020-28478
- Prototype pollution in json8 - CVE-2020-7770
You might also like:
- Tags:
- npm
- immer
Anything's wrong? Let us know Last updated on April 25, 2024


