janl/node-jsonpointer

janl/node-jsonpointer

Releases13
Frequency10 months 4 weeks
Last Release
Stars198
JSON Pointer (RFC6901) implementation for Node.js

CVE History

CVEPublishedCVSS v3CVSS v2
5.6 MEDIUM7.5 HIGH

This affects the package jsonpointer before 5.0.0. A type confusion vulnerability can lead to a bypass of a previous Prototype Pollution fix when the pointer components are arrays.