Description
Prototype pollution vulnerability in ‘safe-obj’ versions 1.0.0 through 1.0.2 allows an attacker to cause a denial of service and may lead to remote code execution.
Recommendation
No fix is available yet. Followings are affected versions:
- >= 1.0.0, <= 1.0.2
References
Related Issues
- Prototype Pollution in merge-change - CVE-2021-23421
- Prototype pollution in aurelia-path - CVE-2021-41097
- jszip Vulnerable to Prototype Pollution - CVE-2021-23413
- Prototype pollution vulnerability in 'patchmerge - CVE-2021-25916
You might also like:
- Tags:
- npm
- safe-obj
Anything's wrong? Let us know Last updated on February 01, 2023


