Description
All versions of package config-handler are vulnerable to Prototype Pollution when loading config files.
Remediation
References
https://github.com/jarradseers/config-handler/issues/1
https://snyk.io/vuln/SNYK-JS-CONFIGHANDLER-1564947
Related Vulnerabilities
CVE-2020-28168 Vulnerability in maven package org.webjars.bower:axios
CVE-2020-7690 Vulnerability in maven package org.webjars.npm:jspdf
CVE-2021-38542 Vulnerability in maven package org.apache.james:james-server
CVE-2021-46364 Vulnerability in maven package info.magnolia:magnolia-core
CVE-2023-46589 Vulnerability in maven package org.apache.tomcat.embed:tomcat-embed-core