Skip to main content

Vendor/product archive

getadigital / nested-object-assign CVEs

Beta · best-effort

1 CVEs tagged to getadigital / nested-object-assign0 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2021-23329

Published Jan 31, 2021

The package nested-object-assign before 1.0.4 are vulnerable to Prototype Pollution via the default function, as demonstrated by running the PoC below.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-1 of 1 CVEsPage 1 of 1