Vulnerabilities/

Prototype Pollution in simpl-schema

Severity:
High

Description

This affects the package simpl-schema before 1.10.2. Attacker controlled input into a schema could result in remote code execution within the scope of the surrounding application.

Recommendation

Update the simpl-schema package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
simpl-schema
Anything's wrong? Let us know Last updated on February 01, 2023

This issue is available in SmartScanner Professional

See Pricing