VYPR

npm package

node-gettext

pkg:npm/node-gettext

Vulnerabilities (1)

  • CVE-2024-21528MedSep 10, 2024
    affected <= 3.0.0

    All versions of the package node-gettext are vulnerable to Prototype Pollution via the addTranslations() function in gettext.js due to improper user input sanitization.