QID 981864
QID 981864: Nodejs (npm) Security Update for arr-flatten-unflatten (GHSA-w8f3-pvx4-4c3h)
All versions of package arr-flatten-unflatten up to and including version 1.1.4 are vulnerable to Prototype Pollution via the constructor.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-w8f3-pvx4-4c3h for updates pertaining to this vulnerability.
Vendor References
- GHSA-w8f3-pvx4-4c3h -
github.com/advisories/GHSA-w8f3-pvx4-4c3h
CVEs related to QID 981864
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-w8f3-pvx4-4c3h | arr-flatten-unflatten |
|