Description
Simple-Plist v1.3.0 was discovered to contain a prototype pollution vulnerability via .parse().
Remediation
References
https://github.com/wollardj/simple-plist/issues/60
Related Vulnerabilities
CVE-2020-8124 Vulnerability in maven package org.webjars.bowergithub.unshiftio:url-parse
CVE-2016-0710 Vulnerability in maven package org.apache.portals.jetspeed-2:jetspeed-security
CVE-2022-39239 Vulnerability in npm package @netlify/ipx
CVE-2017-16212 Vulnerability in npm package ltt
CVE-2021-4264 Vulnerability in maven package org.webjars.npm:dustjs-linkedin