Description
Simple-Plist v1.3.0 was discovered to contain a prototype pollution vulnerability via .parse().
Remediation
References
https://github.com/wollardj/simple-plist/issues/60
Related Vulnerabilities
CVE-2023-33546 Vulnerability in maven package org.codehaus.janino:janino-parent
CVE-2018-16489 Vulnerability in maven package org.webjars.npm:just-extend
CVE-2022-42003 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2023-40573 Vulnerability in maven package org.xwiki.platform:xwiki-platform-scheduler-api
CVE-2021-3827 Vulnerability in maven package org.keycloak:keycloak-services