QID 981845
QID 981845: Nodejs (npm) Security Update for tiny-conf (GHSA-4q97-fh3f-j294)
All versions of package tiny-conf up to and including version 1.1.0 are vulnerable to Prototype Pollution via the set function.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-4q97-fh3f-j294 for updates pertaining to this vulnerability.
Vendor References
- GHSA-4q97-fh3f-j294 -
github.com/advisories/GHSA-4q97-fh3f-j294
CVEs related to QID 981845
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-4q97-fh3f-j294 | tiny-conf |
|