All versions of package merge-deep2 are vulnerable to Prototype Pollution via the mergeDeep() function.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://snyk.io/vuln/SNYK-JS-MERGEDEEP2-1727593 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: snyk
Published: 2021-12-10T20:05:22.255505Z
Updated: 2024-09-16T21:09:04.413Z
Reserved: 2021-01-08T00:00:00
Link: CVE-2021-23700
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2021-12-10T20:15:08.527
Modified: 2021-12-14T18:47:31.350
Link: CVE-2021-23700
Redhat
No data.