CVE-2022-37266
npm/steal
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
Prototype pollution vulnerability in function extend in babel.js in stealjs steal 2.2.4 via the key variable in babel.js.
Version 2.2.4
Upgrade to version 2.3.0 or above.
2022-09-20
source |