VYPR
Vendor

Js Data

Products
1
CVEs
2
Across products
2
Status
Private

Products

1

Recent CVEs

2
  • CVE-2021-23574HigDec 24, 2021
    risk 0.49cvss 7.5epss 0.02

    All versions of package js-data are vulnerable to Prototype Pollution via the deepFillIn and the set functions. This is an incomplete fix of [CVE-2020-28442](https://snyk.io/vuln/SNYK-JS-JSDATA-1023655).

  • CVE-2020-28442HigDec 15, 2020
    risk 0.42cvss 7.5epss 0.02

    All versions of package js-data are vulnerable to Prototype Pollution via the deepFillIn function.