QID 980444
QID 980444: Nodejs (npm) Security Update for deepref (GHSA-7c7g-72q7-4xhm)
Prototype pollution vulnerability in 'deepref' versions 1.1.1 through 1.2.1 allows attacker to cause a denial of service and may lead to remote code execution.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-7c7g-72q7-4xhm for updates pertaining to this vulnerability.
Vendor References
- GHSA-7c7g-72q7-4xhm -
github.com/advisories/GHSA-7c7g-72q7-4xhm
CVEs related to QID 980444
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-7c7g-72q7-4xhm | deepref |
|