All versions of package deep-get-set are vulnerable to Prototype Pollution via the 'deep' function. Note: This vulnerability derives from an incomplete fix of CVE-2020-7715
References:GSA_kwCzR0hTQS1tampqLTZwNDMtdmhods4AAs9_
Prototype Pollution in deep-get-set
| Affected Packages | Affected Versions | Fixed Versions | |
|---|---|---|---|
|
npm:deep-get-set
PURL:
pkg:npm/deep-get-set
|
<= 1.1.1 | No known fixed version | |
Affected Version RangesAll affected versions0.1.0, 0.1.1, 1.0.0, 1.1.0, 1.1.1 |
|||