The package node-forge prior to 0.10.0 is vulnerable to Prototype Pollution via the util.setPath function. Note: Version 0.10.0 is a breaking change removing the vulnerable functions.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
digitalbazaar forge |