CVE-2020-28499
EUVD-2021-101018.02.2021, 16:15
All versions of package merge are vulnerable to Prototype Pollution via _recursiveMerge .Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| merge_project | merge | 𝑥 < 2.1.1 |
𝑥
= Vulnerable software versions
References