Description
Prototype pollution vulnerability in 'set-getter' version 0.1.0 allows an attacker to cause a denial of service and may lead to remote code execution.
Remediation
References
https://github.com/doowb/set-getter/blob/5bc2750fe1c3db9651d936131be187744111378d/index.js#L56
https://www.whitesourcesoftware.com/vulnerability-database/CVE-2021-25949
Related Vulnerabilities
CVE-2021-28164 Vulnerability in maven package org.eclipse.jetty:jetty-webapp
CVE-2023-39345 Vulnerability in npm package @strapi/plugin-users-permissions
CVE-2018-16487 Vulnerability in maven package org.webjars.npm:lodash.merge
CVE-2020-13949 Vulnerability in maven package org.apache.thrift:libthrift
CVE-2022-29647 Vulnerability in maven package net.mingsoft:ms-mcms