Description
All versions of package tiny-conf are vulnerable to Prototype Pollution via the set function.
Remediation
References
https://snyk.io/vuln/SNYK-JS-TINYCONF-598792
Related Vulnerabilities
CVE-2020-7722 Vulnerability in npm package nodee-utils
CVE-2022-22965 Vulnerability in maven package org.springframework:spring-webflux
CVE-2023-29512 Vulnerability in maven package org.xwiki.platform:xwiki-platform-web-templates
CVE-2013-3300 Vulnerability in maven package net.liftweb:lift-json_2.9.1
CVE-2022-29823 Vulnerability in npm package feathers-sequelize