VDB
Sign up
HIGH7.5

GHSA-39qv-prmh-x37f

Prototype Pollution in @strikeentco/set

Quick fix

GHSA-39qv-prmh-x37f — @strikeentco/set: upgrade to the fixed version with the command below.

npm install @strikeentco/set@1.0.2

Details

This affects the package @strikeentco/set before 1.0.2. It allows an attacker to cause a denial of service and may lead to remote code execution. **Note:** This vulnerability derives from an incomplete fix in https://security.snyk.io/vuln/SNYK-JS-STRIKEENTCOSET-1038821

Are you affected?

Enter the version of the package you're using.

Affected packages

npm/@strikeentco/set
Introduced in: 0Fixed in: 1.0.2
Fixnpm install @strikeentco/set@1.0.2

References