VYPR

npm package

just-extend

pkg:npm/just-extend

Vulnerabilities (1)

  • CVE-2018-16489Feb 1, 2019
    affected < 4.0.0fixed 4.0.0

    A prototype pollution vulnerability was found in just-extend <4.0.0 that allows attack to inject properties onto Object.prototype through its functions.