Vulnerabilities/

Quasar: Prototype pollution in the extend() utility

Severity:
Medium

Description

[email protected], the latest published version at the time of testing, appears to be vulnerable to prototype pollution through the public extend() utility exported from the package root.

Recommendation

Update the quasar package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
quasar
Anything's wrong? Let us know Last updated on August 13, 2026