CVE-2019-10746
23.08.2019, 17:15
mixin-deep is vulnerable to Prototype Pollution in versions before 1.3.2 and version 2.0.0. The function mixin-deep could be tricked into adding or modifying properties of Object.prototype using a constructor payload.
Vendor | Product | Version |
---|---|---|
mixin-deep_project | mixin-deep | 𝑥 < 1.3.2 |
mixin-deep_project | mixin-deep | 2.0.0 |
oracle | communications_cloud_native_core_network_function_cloud_native_environment | 1.4.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
References