CVE-2020-8147

Publication date

2020-04-03 20:52:38

Family

hackerone

State

PUBLISHED

Description

Flaw in input validation in npm package utils-extend version 1.0.8 and earlier may allow prototype pollution attack that may result in remote code execution or denial of service of applications using utils-extend.