QID 982086
QID 982086: Nodejs (npm) Security Update for nedb (GHSA-339j-hqgx-qrrx)
This affects all versions of package nedb. The library could be tricked into adding or modifying properties of Object.prototype using a __proto__ or constructor.prototype payload.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-339j-hqgx-qrrx for updates pertaining to this vulnerability.
Vendor References
- GHSA-339j-hqgx-qrrx -
github.com/advisories/GHSA-339j-hqgx-qrrx
CVEs related to QID 982086
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-339j-hqgx-qrrx | nedb |
|