Security Advisory

CVE-2024-36582

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-06-17 00:00:00
Last updated 2024-08-19 16:55:23
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

alexbinary object-deep-assign 1.0.11 is vulnerable to Prototype Pollution via the extend() method of Module.deepAssign (/src/index.js)