QID 983242
QID 983242: Nodejs (npm) Security Update for mquery (GHSA-45q2-34rf-mr94)
lib/utils.js in mquery before 3.2.3 allows a pollution attack because a special property (e.g., __proto__) can be copied during a merge or clone operation.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-45q2-34rf-mr94 for updates pertaining to this vulnerability.
Vendor References
- GHSA-45q2-34rf-mr94 -
github.com/advisories/GHSA-45q2-34rf-mr94
CVEs related to QID 983242
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-45q2-34rf-mr94 | mquery |
|