QID 980669
QID 980669: Nodejs (npm) Security Update for @viking04/merge (GHSA-cqqh-49mx-fq63)
merge is vulnerable to Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-cqqh-49mx-fq63 for updates pertaining to this vulnerability.
Vendor References
- GHSA-cqqh-49mx-fq63 -
github.com/advisories/GHSA-cqqh-49mx-fq63
CVEs related to QID 980669
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-cqqh-49mx-fq63 | @viking04/merge |
|