Description
Prototype pollution vulnerability in '@strikeentco/set' version 1.0.0 allows attacker to cause a denial of service and may lead to remote code execution.
Remediation
References
https://github.com/strikeentco/set/commit/102cc6b2e1d1e0c928ced87e75df759d5541ff60
https://www.whitesourcesoftware.com/vulnerability-database/CVE-2020-28267
Related Vulnerabilities
CVE-2023-23850 Vulnerability in maven package org.jenkins-ci.plugins:synopsys-coverity
CVE-2020-36732 Vulnerability in maven package org.webjars.bowergithub.brix:crypto-js
CVE-2022-25867 Vulnerability in maven package io.socket:socket.io-client
CVE-2019-12419 Vulnerability in maven package org.apache.cxf:cxf-rt-rs-security-sso-oidc
CVE-2016-6797 Vulnerability in maven package org.apache.tomcat:tomcat-catalina