eggjs/extend2

eggjs/extend2

Releases15
Frequency10 months 1 week
Last Release
Stars48
Simple function to extend objects

CVE History

CVEPublishedCVSS v3CVSS v2
7.3 HIGH7.5 HIGH

The package extend2 before 1.0.1 are vulnerable to Prototype Pollution via the extend function due to unsafe recursive merge.