CVE-2022-25301

Publication date

2022-05-01 16:25:12

Family

snyk

State

PUBLISHED

Description

All versions of package jsgui-lang-essentials are vulnerable to Prototype Pollution due to allowing all Object attributes to be altered, including their magical attributes such as proto, constructor and prototype.