Description
All versions of package arr-flatten-unflatten are vulnerable to Prototype Pollution via the constructor.
Remediation
References
https://snyk.io/vuln/SNYK-JS-ARRFLATTENUNFLATTEN-598396
Related Vulnerabilities
CVE-2022-37199 Vulnerability in maven package com.jflyfox:jflyfox_jfinal
CVE-2021-29418 Vulnerability in npm package netmask
CVE-2020-8131 Vulnerability in maven package org.webjars.npm:yarn
CVE-2020-8141 Vulnerability in maven package org.webjars.npm:dot
CVE-2023-22465 Vulnerability in maven package org.http4s:http4s-core_2.13