Prototype Pollution in minimist
CVE-2021-44906 — CVSS 9.8/10. Fix: upgrade to 1.2.6.
Minimist prior to 1.2.6 and 0.2.4 is vulnerable to Prototype Pollution via file `index.js`, function `setKey()` (lines 69-95).
Weakness classes: CWE-1321 (Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution'))
Source: GHSA-xvch-5gv4-984h · GitHub Advisory Database (CC-BY-4.0) — printed from a structured Sanity dataset. ← Back to the front page