Description
All versions of package arr-flatten-unflatten are vulnerable to Prototype Pollution via the constructor.
Remediation
References
https://snyk.io/vuln/SNYK-JS-ARRFLATTENUNFLATTEN-598396
Related Vulnerabilities
CVE-2022-3171 Vulnerability in maven package com.google.protobuf:protobuf-kotlin-lite
CVE-2022-41340 Vulnerability in npm package @lionello/secp256k1-js
CVE-2017-16175 Vulnerability in npm package ewgaddis.lab6
CVE-2021-43307 Vulnerability in maven package org.webjars.npm:semver-regex
CVE-2021-3815 Vulnerability in npm package @fabiocaccamo/utils.js