Security Advisory

CVE-2021-23397

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-07-25 14:07:41
Last updated 2024-09-16 19:10:52
Assigner snyk
State PUBLISHED

Description

All versions of package @ianwalter/merge are vulnerable to Prototype Pollution via the main (merge) function. Maintainer suggests using @generates/merger instead.