Description
All versions of package comb are vulnerable to Prototype Pollution via the deepMerge() function.
Remediation
References
https://snyk.io/vuln/SNYK-JS-COMB-1730083
Related Vulnerabilities
CVE-2021-28164 Vulnerability in maven package org.eclipse.jetty:jetty-webapp
CVE-2022-43432 Vulnerability in maven package org.jenkins-ci.plugins:xframium
CVE-2020-5259 Vulnerability in maven package org.webjars.bowergithub.dojo:dojox
CVE-2022-0355 Vulnerability in npm package simple-get
CVE-2020-7766 Vulnerability in maven package org.webjars.npm:json-ptr