Description
Prototype pollution vulnerability in 'js-extend' versions 0.0.1 through 1.0.1 allows attacker to cause a denial of service and may lead to remote code execution.
Remediation
References
https://www.whitesourcesoftware.com/vulnerability-database/CVE-2021-25945
Related Vulnerabilities
CVE-2020-28436 Vulnerability in npm package google-cloudstorage-commands
CVE-2020-28494 Vulnerability in npm package total.js
CVE-2023-36469 Vulnerability in maven package org.xwiki.platform:xwiki-platform-notifications-ui
CVE-2020-11057 Vulnerability in maven package org.xwiki.platform:xwiki-platform-dashboard-macro
CVE-2020-7713 Vulnerability in npm package arr-flatten-unflatten