Description
object-path is vulnerable to Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
Remediation
References
https://github.com/mariocasciaro/object-path/commit/e6bb638ffdd431176701b3e9024f80050d0ef0a6
https://huntr.dev/bounties/571e3baf-7c46-46e3-9003-ba7e4e623053
https://lists.debian.org/debian-lts-announce/2023/01/msg00031.html
Related Vulnerabilities
CVE-2022-31023 Vulnerability in maven package com.typesafe.play:play_2.12
CVE-2021-31597 Vulnerability in npm package xmlhttprequest-ssl
CVE-2022-0613 Vulnerability in npm package urijs
CVE-2022-2421 Vulnerability in maven package org.webjars.npm:socket.io-parser
CVE-2021-21252 Vulnerability in npm package jquery-validation