QID 981863
QID 981863: Nodejs (npm) Security Update for deeps (GHSA-rgfv-v3jh-7ffp)
All versions of package deeps up to and including version 1.4.5 are vulnerable to Prototype Pollution via the set function.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-rgfv-v3jh-7ffp for updates pertaining to this vulnerability.
Vendor References
- GHSA-rgfv-v3jh-7ffp -
github.com/advisories/GHSA-rgfv-v3jh-7ffp
CVEs related to QID 981863
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-rgfv-v3jh-7ffp | deeps |
|