Description
All versions of package tiny-conf are vulnerable to Prototype Pollution via the set function.
Remediation
References
https://snyk.io/vuln/SNYK-JS-TINYCONF-598792
Related Vulnerabilities
CVE-2021-34801 Vulnerability in npm package valine
CVE-2021-32818 Vulnerability in npm package haml-coffee
CVE-2020-9480 Vulnerability in maven package org.apache.spark:spark-network-shuffle_2.10
CVE-2021-23417 Vulnerability in npm package deepmergefn
CVE-2020-25724 Vulnerability in maven package io.quarkus:quarkus-resteasy-reactive-parent-aggregator