Vulnerabilities/

Prototype pollution vulnerability in 'deep-set

Severity:
High

Description

The NPM module ‘deep-set’ can be abused by Prototype Pollution vulnerability since the function deepSet() does not check for the type of object before assigning value to the property.

Recommendation

No fix is available yet. Followings are affected versions:

References

Related Issues

Tags:
npm
deep-set
Anything's wrong? Let us know Last updated on April 22, 2024