Vulnerabilities/

Prototype Pollution in phpjs

Severity:
High

Description

All versions of phpjs up to and including 1.3.2 are vulnerable to Prototype Pollution via parse_str. phpjs is no longer maintained and users are advised to use Locutus as a replacement (https://github.com/locutusjs/locutus)

Recommendation

No fix is available yet. Followings are affected versions:

References

Related Issues

Tags:
npm
phpjs
Anything's wrong? Let us know Last updated on February 01, 2023