Security Advisory

CVE-2021-23329

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-01-31 15:25:14
Last updated 2024-09-16 16:32:38
Assigner snyk
State PUBLISHED

Description

The package nested-object-assign before 1.0.4 are vulnerable to Prototype Pollution via the default function, as demonstrated by running the PoC below.