VYPR

npm package

deepmerge-ts

pkg:npm/deepmerge-ts

Vulnerabilities (1)

  • CVE-2022-24802Mar 31, 2022
    affected < 4.0.2fixed 4.0.2

    deepmerge-ts is a typescript library providing functionality to deep merging of javascript objects. deepmerge-ts is vulnerable to Prototype Pollution via file deepmerge.ts, function defaultMergeRecords(). This issue has been patched in version 4.0.2. There are no known workaround