Description
hoek before 8.5.1 and 9.x before 9.0.3 allows prototype poisoning in the clone function.
Remediation
References
https://github.com/hapijs/hoek/issues/352
https://security.snyk.io/vuln/SNYK-JS-HAPIHOEK-548452%29
Related Vulnerabilities
CVE-2021-21298 Vulnerability in npm package @node-red/runtime
CVE-2018-16487 Vulnerability in maven package org.webjars.npm:lodash.merge
CVE-2022-35948 Vulnerability in npm package undici
CVE-2021-27515 Vulnerability in npm package url-parse
CVE-2019-10212 Vulnerability in maven package io.undertow:undertow-core