Security Advisories for mongoose in npm
Moderate
2 months ago
Mongoose: Prototype pollution in mongoose update casting via __proto__-prefixed dotted path (Schema._getSchema/path getter)
npm
mongoose
High
5 months ago
Mongoose's Improper Sanitization of $nor in sanitizeFilter May Allow NoSQL Injection
npm
mongoose
High
about 4 years ago
automattic/mongoose vulnerable to Prototype pollution via Schema.path
npm
mongoose