Critical severity9.8NVD Advisory· Published May 30, 2023· Updated Jun 17, 2026
CVE-2023-2972
CVE-2023-2972
Description
Prototype Pollution in GitHub repository antfu/utils prior to 0.7.3.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
@antfu/utilsnpm | < 0.7.3 | 0.7.3 |
Affected products
3- antfu/antfu/utilsv5Range: unspecified
Patches
Vulnerability mechanics
References
4- github.com/antfu/utils/commit/7f8b16c6181c988bdb96613fbb2533b345f68682nvdPatchWEB
- huntr.dev/bounties/009f1cd9-401c-49a7-bd08-be35cff6faefnvdExploitPatchWEB
- github.com/advisories/GHSA-p2fh-2h23-6grgghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2023-2972ghsaADVISORY
News mentions
0No linked articles in our index yet.