Description
Prototype pollution vulnerability in 'js-extend' versions 0.0.1 through 1.0.1 allows attacker to cause a denial of service and may lead to remote code execution.
Remediation
References
https://www.whitesourcesoftware.com/vulnerability-database/CVE-2021-25945
Related Vulnerabilities
CVE-2020-8215 Vulnerability in npm package canvas
CVE-2023-43497 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2022-0235 Vulnerability in npm package node-fetch
CVE-2021-27516 Vulnerability in maven package org.webjars.bower:urijs
CVE-2020-36518 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind