CVE-2020-7720

Publication date

2020-09-01 09:35:12

Family

snyk

State

PUBLISHED

Description

The package node-forge before 0.10.0 is vulnerable to Prototype Pollution via the util.setPath function. Note: Version 0.10.0 is a breaking change removing the vulnerable functions.