Description
In all versions of package casperjs, the mergeObjects utility function is susceptible to Prototype Pollution.
Remediation
References
https://github.com/casperjs/casperjs/blob/master/modules/utils.js%23L680
https://snyk.io/vuln/SNYK-JAVA-ORGWEBJARSBOWER-572804
https://snyk.io/vuln/SNYK-JS-CASPERJS-572803
Related Vulnerabilities
CVE-2023-30516 Vulnerability in maven package org.jenkins-ci.plugins:image-tag-parameter
CVE-2020-7637 Vulnerability in maven package org.webjars.npm:class-transformer
CVE-2022-36097 Vulnerability in maven package org.xwiki.platform:xwiki-platform-attachment-ui
CVE-2019-10754 Vulnerability in maven package org.apereo.cas:cas-server-support-oidc
CVE-2022-24847 Vulnerability in maven package org.geoserver.community:gs-taskmanager-core