mixin-deep Project mixin-deep 2.0.0 for Node.js

CPE Details

mixin-deep Project mixin-deep 2.0.0 for Node.js
2.0.0
2019-09-09
16h18 +00:00
2019-09-09
16h18 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:mixin-deep_project:mixin-deep:2.0.0:*:*:*:*:node.js:*:*

Informations

Vendor

mixin-deep_project

Product

mixin-deep

Version

2.0.0

Target Software

node.js

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2019-10746 2019-08-23 14h43 +00:00 mixin-deep is vulnerable to Prototype Pollution in versions before 1.3.2 and version 2.0.0. The function mixin-deep could be tricked into adding or modifying properties of Object.prototype using a constructor payload.
9.8
Critique