CVE-2019-10750
23.08.2019, 17:15
deeply is vulnerable to Prototype Pollution in versions before 3.1.0. The function assign-deep could be tricked into adding or modifying properties of Object.prototype using using a _proto_ payload.Enginsight
| Vendor | Product | Version |
|---|---|---|
| deeply_project | deeply | 𝑥 < 3.1.0 |
𝑥
= Vulnerable software versions