Lucene search

K
nodejsOlivier Arteau (HoLyVieR)NODEJS:579
HistoryApr 24, 2018 - 2:33 p.m.

Prototype Pollution

2018-04-2414:33:06
Olivier Arteau (HoLyVieR)
www.npmjs.com
12

0.001 Low

EPSS

Percentile

43.5%

Overview

Versions of assign-deep before 0.4.7 are vulnerable to prototype pollution via merging functions.

Recommendation

Update to version 0.4.7 or later.

References

CPENameOperatorVersion
assign-deeplt0.4.7

0.001 Low

EPSS

Percentile

43.5%