GHSA-4hq8-jgr8-mw9j, CVE-2020-7641
npm/grunt-util-property
Object prototype pollution
This affects all versions of package grunt-util-property. The function call could be tricked into adding or modifying properties of Object.prototype
using a __proto__
payload.
All versions up to 0.0.2
Unfortunately, there is no solution available yet.
2022-07-26
source |