Description
madlib-object-utils before 0.1.7 is vulnerable to Prototype Pollution via setValue.
Recommendation
Update the madlib-object-utils package to the latest compatible version. Followings are version details:
- Affected version(s): < 0.1.7
- Patched version(s): 0.1.7
References
Related Issues
- Prototype Pollution in madlib-object-utils - CVE-2022-24279
- Prototype Pollution in lodash (GHSA-p6mc-m468-83gw) 5 - CVE-2020-8203
- Prototype Pollution in lodash (GHSA-p6mc-m468-83gw) - CVE-2020-8203
- Prototype Pollution in lodash (GHSA-p6mc-m468-83gw) 4 - CVE-2020-8203
- Tags:
- npm
- madlib-object-utils
Anything's wrong? Let us know Last updated on January 27, 2023