Description
The package bmoor before 0.8.12 are vulnerable to Prototype Pollution via the set function.
Remediation
References
https://github.com/b-heilman/bmoor/commit/7d4a086a1dc3ef11ed0b323824d02348734b7da5
https://snyk.io/vuln/SNYK-JS-BMOOR-598664
Related Vulnerabilities
CVE-2018-20676 Vulnerability in maven package org.webjars:bootstrap-sass
CVE-2022-22947 Vulnerability in maven package org.springframework.cloud:spring-cloud-gateway
CVE-2021-41183 Vulnerability in maven package org.webjars.npm:jquery-ui
CVE-2023-2138 Vulnerability in npm package @nuxtlabs/github-module
CVE-2022-2218 Vulnerability in maven package org.webjars.npm:parse-url