VYPR

npm package

@ianwalter/merge

pkg:npm/%40ianwalter/merge

Vulnerabilities (1)

  • CVE-2021-23397Jul 25, 2022
    affected <= 9.0.1

    All versions of package @ianwalter/merge are vulnerable to Prototype Pollution via the main (merge) function. Maintainer suggests using @generates/merger instead.