MEDIUM5.3npmRubyGems
GHSA-29mw-wpgm-hmr9· CVE-2020-28500Regular Expression Denial of Service (ReDoS) in lodash
Modified: 9/29/2025
package
pkg:npm/lodash-es
Regular Expression Denial of Service (ReDoS) in lodash
Modified: 9/29/2025
Command Injection in lodash
Modified: 9/10/2026
lodash vulnerable to Prototype Pollution via array path bypass in `_.unset` and `_.omit`
Modified: 9/10/2026
Prototype Pollution in lodash
Modified: 9/10/2026
Prototype Pollution in lodash
Modified: 8/12/2025
lodash vulnerable to Code Injection via `_.template` imports key names
Modified: 9/10/2026
Regular Expression Denial of Service (ReDoS) in lodash
Modified: 9/10/2026
Lodash has Prototype Pollution Vulnerability in `_.unset` and `_.omit` functions
Modified: 9/10/2026