Description
Prototype pollution vulnerability in ‘js-extend’ versions 0.0.1 through 1.0.1 allows attacker to cause a denial of service and may lead to remote code execution.
Recommendation
No fix is available yet. Followings are affected versions:
- <= 1.0.1
References
Could your website be exposed too?
SmartScanner can check your website for Prototype pollution vulnerability in js-extend and gives you actionable findings to investigate.
Start a free scanRelated Issues
- Prototype Pollution Vulnerability in object-collider - CVE-2021-25914
- Starcounter-Jack JSON-Patch Prototype Pollution vulnerability - CVE-2021-4279
- Prototype Pollution in object-extend - CVE-2021-23702
- jquery-plugin-query-object contains prototype pollution vulnerability - CVE-2021-20083
You might also like:
See something that needs correcting? Let us knowUpdated January 27, 2023


