Description
All versions of package confucious are vulnerable to Prototype Pollution via the set function.
Remediation
References
https://snyk.io/vuln/SNYK-JS-CONFUCIOUS-598665
Related Vulnerabilities
CVE-2022-41828 Vulnerability in maven package com.amazon.redshift:redshift-jdbc42
CVE-2020-9484 Vulnerability in maven package org.apache.tomcat.embed:tomcat-embed-core
CVE-2022-1330 Vulnerability in maven package org.webjars.bower:fullpage.js
CVE-2023-26136 Vulnerability in maven package org.webjars.npm:tough-cookie
CVE-2020-7713 Vulnerability in npm package arr-flatten-unflatten