HIGH
GHSA-84p7-fh9c-6g8h
Prototype Pollution in mixme
Quick fix
GHSA-84p7-fh9c-6g8h — mixme: upgrade to the fixed version with the command below.
npm install mixme@0.5.2Details
### Impact When copying properties from a source object to a target object, the target object can gain access to certain properties of the source object and modify their content.
### Patches The problem was patch with a more agressive discovery of secured properties to filter out.
Are you affected?
Enter the version of the package you're using.
Affected packages
References
- https://github.com/adaltas/node-mixme/security/advisories/GHSA-84p7-fh9c-6g8h[WEB]
- https://github.com/adaltas/node-mixme/issues/1[WEB]
- https://github.com/adaltas/node-mixme/issues/2[WEB]
- https://github.com/adaltas/node-mixme/commit/db70fe9bcbba451e9f8bd794a9fa7cdfa00125ad[WEB]
- https://github.com/adaltas/node-mixme[PACKAGE]
- https://github.com/advisories/GHSA-79jw-6wg7-r9g4[ADVISORY]