VDB
Sign up
HIGH7.5

GHSA-m8gw-hjpr-rjv7

Prototype Pollution in dojo

Details

All versions of package dojo are vulnerable to Prototype Pollution via the setObject function.

Are you affected?

Enter the version of the package you're using.

Affected packages

npm/dojo
Introduced in: 0

No fixed version published yet for dojo (npm). Pin to a known-safe version or switch to an alternative.

References