Skip to content

[VULN] Security Alert for extend #990

@srm-local-dev-test

Description

@srm-local-dev-test

Alert IDs:

  • 5e41c688-26b0-48b4-ab0c-551a0d6793dc

Vulnerabilities in extend

Release: 21st May Release

Total Vulnerabilities: 1


1. CVE-2018-16492

Severity: MEDIUM (Score: 0.0)

Description:
A prototype pollution vulnerability was found in module extend <2.0.2, ~<3.0.2 that allows an attacker to inject arbitrary properties onto Object.prototype.

Reference: https://nvd.nist.gov/vuln/detail/CVE-2018-16492

Alert ID: 5e41c688-26b0-48b4-ab0c-551a0d6793dc


Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions