Описание
Prototype Pollution in swiper
Versions of the package swiper before 6.5.1 are susceptible to prototype pollution.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2021-23370
- https://github.com/nolimits4web/Swiper/commit/ec358deab79a8cd2529465f07a0ead5dbcc264ad
- https://github.com/nolimits4web/swiper/commit/9dad2739b7474f383474773d5ab898a0c29ac178
- https://github.com/nolimits4web/swiper/blob/master/CHANGELOG.md#651-2021-03-29
- https://snyk.io/vuln/SNYK-JAVA-ORGWEBJARS-1244698
- https://snyk.io/vuln/SNYK-JAVA-ORGWEBJARSBOWER-1244699
- https://snyk.io/vuln/SNYK-JAVA-ORGWEBJARSBOWERGITHUBNOLIMITS4WEB-1244697
- https://snyk.io/vuln/SNYK-JAVA-ORGWEBJARSNPM-1244696
- https://snyk.io/vuln/SNYK-JS-SWIPER-1088062
Пакеты
Наименование
swiper
npm
Затронутые версииВерсия исправления
< 6.5.1
6.5.1