Description
Simple-Plist v1.3.0 was discovered to contain a prototype pollution vulnerability via .parse().
Remediation
References
https://github.com/wollardj/simple-plist/issues/60
Related Vulnerabilities
CVE-2020-16040 Vulnerability in npm package electron
CVE-2023-40349 Vulnerability in maven package org.jenkins-ci.plugins:gogs-webhook
CVE-2022-37616 Vulnerability in npm package @xmldom/xmldom
CVE-2024-36401 Vulnerability in maven package org.geoserver:gs-wfs
CVE-2022-41401 Vulnerability in maven package org.openrefine:main