CVE-2020-28273: Code Injection
(updated )
Prototype pollution vulnerability in ‘set-in’ allows attacker to cause a denial of service and may lead to remote code execution.
References
Detect and mitigate CVE-2020-28273 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →