Description
This affects all versions of package mootools. This is due to the ability to pass untrusted input to Object.merge()
Remediation
References
https://snyk.io/vuln/SNYK-JS-MOOTOOLS-1325536
Related Vulnerabilities
CVE-2022-31160 Vulnerability in maven package org.webjars.npm:jquery-ui
CVE-2020-7771 Vulnerability in npm package asciitable.js
CVE-2022-36914 Vulnerability in maven package org.jenkins-ci.plugins:files-found-trigger
CVE-2015-1169 Vulnerability in maven package org.jasig.cas:cas-server-support-ldap