Lucene search

K
nodejsAsgerfNODEJS:780
HistoryFeb 06, 2019 - 1:02 a.m.

Prototype Pollution

2019-02-0601:02:01
asgerf
www.npmjs.com
16

EPSS

0.004

Percentile

73.4%

Overview

Versions of just-extend before 4.0.0 are vulnerable to prototype pollution. Provided certain input just-extend can add or modify properties of the Object prototype. These properties will be present on all objects.

Recommendation

Update to version 4.0.0 or later.

References

EPSS

0.004

Percentile

73.4%