Description
Prototype Pollution in GitHub repository automattic/mongoose prior to 7.3.4.
Remediation
References
https://github.com/automattic/mongoose/commit/305ce4ff789261df7e3f6e72363d0703e025f80d
https://huntr.dev/bounties/1eef5a72-f6ab-4f61-b31d-fc66f5b4b467
Related Vulnerabilities
CVE-2017-5617 Vulnerability in maven package com.metsci.ext.com.kitfox.svg:svg-salamander
CVE-2022-23812 Vulnerability in npm package node-ipc
CVE-2021-4264 Vulnerability in maven package org.webjars.npm:dustjs-linkedin
CVE-2020-35491 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2022-23496 Vulnerability in maven package nl.basjes.parse.useragent:yauaa-flink