CVE-2020-36604

Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in npm/hoek

Identifiers

GHSA-c429-5p7v-vgjp, CVE-2020-36604

Package Slug

npm/hoek

Vulnerability

Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

Description

hoek before 8.5.1 and 9.x before 9.0.3 allows prototype poisoning in the clone function.

Affected Versions

All versions up to 6.1.3

Solution

Unfortunately, there is no solution available yet.

Last Modified

2024-02-09

source