Description
deepmerge-ts is a typescript library providing functionality to deep merging of javascript objects. deepmerge-ts is vulnerable to Prototype Pollution via file deepmerge.ts, function defaultMergeRecords(). This issue has been patched in version 4.0.2. There are no known workarounds for this issue.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-1823 | deepmerge-ts is a typescript library providing functionality to deep merging of javascript objects. deepmerge-ts is vulnerable to Prototype Pollution via file deepmerge.ts, function defaultMergeRecords(). This issue has been patched in version 4.0.2. There are no known workarounds for this issue. |
Github GHSA |
GHSA-r9w3-g83q-m6hq | Prototype Pollution in deepmerge-ts |
References
History
Wed, 23 Apr 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-04-23T18:42:21.021Z
Reserved: 2022-02-10T00:00:00.000Z
Link: CVE-2022-24802
Updated: 2024-08-03T04:20:50.626Z
Status : Modified
Published: 2022-04-01T00:15:08.763
Modified: 2024-11-21T06:51:07.880
Link: CVE-2022-24802
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA