VYPR

Nedb

by Nedb Project

CVEs (1)

  • CVE-2021-23395HigJun 15, 2021
    risk 0.48cvss 7.3epss 0.01

    This affects all versions of package nedb. The library could be tricked into adding or modifying properties of Object.prototype using a __proto__ or constructor.prototype payload.