Description
yargs-parser could be tricked into adding or modifying properties of Object.prototype using a "__proto__" payload.
Remediation
References
https://snyk.io/vuln/SNYK-JS-YARGSPARSER-560381
Related Vulnerabilities
CVE-2012-1833 Vulnerability in maven package org.grails:grails-core
CVE-2009-3579 Vulnerability in maven package org.mortbay.jetty:jetty
CVE-2020-7769 Vulnerability in npm package nodemailer
CVE-2021-23352 Vulnerability in npm package madge
CVE-2018-18853 Vulnerability in maven package io.spray:spray-json_2.10