Vulnerabilities/

Prototype pollution in Plist before 3.0.5 can cause denial of service

Severity:
High

Description

Prototype pollution vulnerability via .parse() in Plist allows attackers to cause a Denial of Service (DoS) and may lead to remote code execution.

Recommendation

Update the plist package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
plist
Anything's wrong? Let us know Last updated on November 29, 2023

This issue is available in SmartScanner Professional

See Pricing