Inappropriate coding practices In merge-deep
Description
Prototype Pollution in merge-deep
Versions of merge-deep before 3.0.1 are vulnerable to prototype pollution via merging functions.
Recommendation
Update to version 3.0.1 or later.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Component | Affected version | Patched versions |
|---|---|---|---|
npm | 3.0.1 |
Aliases
1. 2. 3. 4. 5.
References
1. 2. 3.