Description
Prototype pollution vulnerability in '@strikeentco/set' version 1.0.0 allows attacker to cause a denial of service and may lead to remote code execution.
Remediation
References
https://github.com/strikeentco/set/commit/102cc6b2e1d1e0c928ced87e75df759d5541ff60
https://www.whitesourcesoftware.com/vulnerability-database/CVE-2020-28267
Related Vulnerabilities
CVE-2020-28196 Vulnerability in npm package node-krb5
CVE-2023-34238 Vulnerability in npm package gatsby-plugin-mdx
CVE-2023-47324 Vulnerability in maven package org.silverpeas.core:silverpeas-core-rs
CVE-2022-31160 Vulnerability in maven package org.webjars.bowergithub.jquery:jquery-ui
CVE-2021-41183 Vulnerability in maven package org.webjars.npm:jquery-ui