Описание
Prototype Pollution in extend2
The package extend2 before 1.0.1 are vulnerable to Prototype Pollution via the extend function due to unsafe recursive merge.
Пакеты
Наименование
extend2
npm
Затронутые версииВерсия исправления
< 1.0.1
1.0.1
Связанные уязвимости
CVSS3: 7.3
nvd
около 4 лет назад
The package extend2 before 1.0.1 are vulnerable to Prototype Pollution via the extend function due to unsafe recursive merge.