Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:20624
HistoryJun 28, 2019 - 1:52 p.m.

Prototype Pollution

2019-06-2813:52:21
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
23

EPSS

0.021

Percentile

89.2%

lodash is vulnerable to prototype pollution. The vulnerability exists due to the ability to inject properties in _.defaultsDeep, which allows DoS, and possibly other forms of attacks.