GHSA-q8jq-4rm5-4hm5
HIGHCVE-2024-38988alizeait unflatto <= 1.0.2 was discovered to contain a prototype pollution via the method exports.unflatto at /dist/index.js. This vulnerability allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via injecting arbitrary properties.
- Affected
- < 1.0.3
- Fixed in
- 1.0.3
- Weakness
- CWE-1321
- Published
- 2025-04-01
- Source
- github