Vulnerabilities/

Prototype Pollution in libnested

Severity:
High

Description

The package libnested before 1.5.2 are vulnerable to Prototype Pollution via the set function in index.js. Note: This vulnerability derives from an incomplete fix for CVE-2020-28283

Recommendation

Update the libnested package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
libnested
Anything's wrong? Let us know Last updated on January 27, 2023