QID 981852
QID 981852: Nodejs (npm) Security Update for dot-notes (GHSA-qr4m-jcvc-3382)
All versions of package dot-notes up to and including version 3.2.0 are vulnerable to Prototype Pollution via the create function.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-qr4m-jcvc-3382 for updates pertaining to this vulnerability.
Vendor References
- GHSA-qr4m-jcvc-3382 -
github.com/advisories/GHSA-qr4m-jcvc-3382
CVEs related to QID 981852
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-qr4m-jcvc-3382 | dot-notes |
|