Security Advisory

CVE-2021-23395

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-06-15 19:12:03
Last updated 2024-09-16 23:05:40
Assigner snyk
State PUBLISHED

Description

This affects all versions of package nedb. The library could be tricked into adding or modifying properties of Object.prototype using a __proto__ or constructor.prototype payload.