Vulnerabilities (CVE)

Filtered by vendor Mixin-deep Project Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-10746 1 Mixin-deep Project 1 Mixin-deep 2021-07-20 7.5 HIGH 9.8 CRITICAL
mixin-deep is vulnerable to Prototype Pollution in versions before 1.3.2 and version 2.0.0. The function mixin-deep could be tricked into adding or modifying properties of Object.prototype using a constructor payload.