Lucene search

K
nodejsAnonymousNODEJS:1666
HistoryMay 04, 2021 - 8:21 p.m.

Prototype Pollution

2021-05-0420:21:00
Anonymous
www.npmjs.com
40
merge
vulnerable
prototype pollution
upgrade
version 2.1.1
recursivemerge
nvd
github advisory
software

EPSS

0.004

Percentile

72.2%

Overview

Versions of merge before 2.1.1 are vulnerable to Prototype Pollution via _recursiveMerge .

Recommendation

Upgrade to version 2.1.1 or later

References

EPSS

0.004

Percentile

72.2%