Description
All versions of package merge-deep2 are vulnerable to Prototype Pollution via the mergeDeep() function.
Remediation
References
https://snyk.io/vuln/SNYK-JS-MERGEDEEP2-1727593
Related Vulnerabilities
CVE-2019-10352 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2023-34615 Vulnerability in maven package net.pwall.json:jsonutil
CVE-2017-16030 Vulnerability in npm package useragent
CVE-2023-48223 Vulnerability in npm package fast-jwt
CVE-2021-43309 Vulnerability in npm package uri-template-lite