VYPR
Medium severity5.4GHSA Advisory· Published Aug 24, 2021· Updated Jun 17, 2026

CVE-2021-23432

CVE-2021-23432

Description

This affects all versions of package mootools. This is due to the ability to pass untrusted input to Object.merge()

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
mootoolsnpm
<= 1.5.2

Affected products

3

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.